Hi
I found a known XSS vulnerability in the recent version of Phinch.
In particular, the bug we report is a known bug by CVE-2019-20041.
wp_kses_bad_protocol in wp-includes/kses.php in WordPress before 5.3.1 mishandles the HTML5 colon named entity, allowing attackers to bypass input sanitization, as demonstrated by the javascript: substring.
Please check this line:
|
$string2 = preg_split( '/:|�*58;|�*3a;/i', $string, 2 ); |
Thanks!