"value":"The EmbedPress WordPress plugin before 3.9.2 does not sanitise and escape a parameter before outputting it back in the page containing a specific content, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin"
"value":"El complemento EmbedPress de WordPress anterior a 3.9.2 no sanitiza ni escapa un par\u00e1metro antes de devolverlo a la p\u00e1gina que contiene un contenido espec\u00edfico, lo que genera un Cross-Site Scripting Reflejado que podr\u00eda usarse contra usuarios con privilegios elevados, como el administrador."