Wordpress is prone to an HTML-injection scripting vulnerability because the application fails to properly sanitize user-supplied input. Versions prior to 2.0.6 are vulnerable to this issue.
Beware all you Memestreams Wordpressians, You have an XSS vuln Wordpress Template.PHP HTML Injection Vulnerability |