WordPress fixes 7 bugs, 3 from AI
WordPress 7.1.3 patches seven security flaws, three reported by Anthropic, highlighting AI's role in code auditing.
重要度局所的証拠E3 検査可能執筆簡易
WordPress released version 7.1.3 on October 6, fixing seven security vulnerabilities and four bugs in the core platform.
Notably, three of these seven vulnerabilities were reported by the artificial intelligence company Anthropic. The remaining issues were identified by Trail of Bits, Patchstack, independent researchers, and the WordPress security team.
The most exploitable flaw is a stored cross-site scripting (XSS) vulnerability in the comment management interface, which can trigger malicious scripts when an admin opens the page. Anthropic's reported vulnerabilities involve the WXR exporter, denial-of-service risks, and privilege escalation.