wp-includes/taxonomy.php in WordPress 3.1 before 3.1.3 and 3.2 before Beta 2 has unknown impact and attack vectors related to "Taxonomy query hardening," possibly involving SQL injection.
An official patch is available. Apply the patch as soon as possible.
Patch StatusOfficial Patch
Change Log
| Date | Source | Changes | Score |
|---|
| 2026-07-21 | PoC | E: U→P | 0.0 → 0.0 |
| 2026-07-21 | nvd | patch: Unavailable→Official Patch | 0.0 → 0.0 |
| 2026-07-21 | cve.org | initial, patch: Unavailable | 0.0 |
Affected Software
| Vendor | Product | Version |
|---|
| wordpress | wordpress | 3.1 |
| wordpress | wordpress | 3.1.1 |
| wordpress | wordpress | 3.1.2 |
| wordpress | wordpress | 3.2 |
Published: 2011-08-10