Hacker News new | ask | show | jobs
by marcinw 4794 days ago
For one, a built-in theme editor that exposes you to remote command execution in the presence of another vulnerability, such as cross-site scripting (XSS).