In WordPress before 4.7.3 (wp-includes/embed.php), there is authenticated Cross-Site Scripting (XSS) in YouTube URL Embeds.
We have discovered 536,305 live websites that are affected by CVE-2017-6817.
Product | |
Category | Content Management System |
Vulnerable Domains | 536,305 live websites (5.82% of WordPress install base) |
Vulnerable Versions |
|
Vulnerable Versions Count | 593 versions ( 63.69% of all versions) |
![]() | 97,132 websites |
![]() | 74,522 websites |
![]() | 37,784 websites |
![]() | 31,325 websites |
![]() | 29,280 websites |
![]() | 26,182 websites |
![]() | 24,104 websites |
![]() | 22,437 websites |
![]() | 19,871 websites |
![]() | 18,418 websites |
.com | 187,473 websites |
.it | 49,606 websites |
.com.au | 20,930 websites |
.ru | 19,749 websites |
.org | 18,108 websites |
.de | 17,726 websites |
.net | 16,712 websites |
.co.uk | 16,018 websites |
.pl | 14,406 websites |
.nl | 12,372 websites |
Domain | Country | Rank | Contacts |
---|---|---|---|
*****.com | ![]() | *,*** | |
****.***********.de | ![]() | *,*** | |
*************.com | ![]() | *,*** | |
************.org | ![]() | *,*** | |
********.eu | ![]() | *,*** | |
********************.ru | ![]() | *,*** | |
*******.**.ca | ![]() | *,*** | |
**********.com | ![]() | **,*** | |
***************.org | ![]() | **,*** | |
**************.********.com | ![]() | **,*** |
FAQ