The latest vulnerability involves a bug that could let cybercriminals inject JavaScript code into comments field. The vulnerability affects Version 4.2 of the blogging and website platform. A patch was made available for a similar vulnerability discovered more than a year ago, though in that case, the code required special characters to execute an attack. A security researcher confirmed to Forbes that the vulnerability is a real danger, and though the company said it will offer a patch, there is no real sense of when it will be released.”]