Back to search
CVE-2024-13896
Published: Apr 10, 2025
Modified: Aug 27, 2025
PUBLISHED
Description
The WP-GeSHi-Highlight — rock-solid syntax highlighting for 259 languages WordPress plugin through 1.4.3 processes user-supplied input as a regular expression via the wp_geshi_filter_replace_code() function, which could lead to Regular Expression Denial of Service (ReDoS) issue
| Vendor | Product | Versions |
|---|---|---|
Unknown | WP-GeSHi-Highlight — rock-solid syntax highlighting for 259 languages | affected 0 - <= 1.4.3 |
References
https://wpscan.com/vulnerability/b8b622ea-e090-45ad-8755-b050fc055231/
exploit
vdb-entry
technical-description
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now