Skip to main content
Loading…
    CVE-2016-9263 — WordPress through 4.8.2, when domain-based flashmediaelement.swf sandboxing is not used, allows remote attackers to conduct cross-domain Flash injection (XSF) attacks by leveraging code contained with — CVE Database · The Intelligence Room