Security Advisory
CVE-2009-2431
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
WordPress 2.7.1 places the username of a posts author in an HTML comment, which allows remote attackers to obtain sensitive information by reading the HTML source.