CVE-2017-6814 | WordPress up to 4.7.2 Media File Metadata wp-includes/media.php renderTracks cross site scripting (Nessus ID 97797 / ID 175994)
A vulnerability has been found in WordPress up to 4.7.2 and classified as problematic. This vulnerability affects the function renderTracks of the file wp-includes/media.php of the component Media File Metadata Handler. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2017-6814. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.