Vulnerabilities > Feedwordpress Project

DATE CVE VULNERABILITY TITLE RISK
2022-02-21 CVE-2021-25055 Cross-site Scripting vulnerability in Feedwordpress Project Feedwordpress
The FeedWordPress plugin before 2022.0123 is affected by a Reflected Cross-Site Scripting (XSS) within the "visibility" parameter.
4.3
2019-08-28 CVE-2015-9358 Cross-site Scripting vulnerability in Feedwordpress Project Feedwordpress 2014.0805
The feedwordpress plugin before 2015.0514 for WordPress has XSS via add_query_arg() and remove_query_arg().
4.3
2015-05-21 CVE-2015-4018 SQL Injection vulnerability in Feedwordpress Project Feedwordpress 2014.0805
SQL injection vulnerability in feedwordpresssyndicationpage.class.php in the FeedWordPress plugin before 2015.0514 for WordPress allows remote authenticated users to execute arbitrary SQL commands via the link_ids[] parameter in an Update action in the syndication.php page to wp-admin/admin.php.
network
low complexity
feedwordpress-project CWE-89
6.5