Vulnerabilities > Feedwordpress Project
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-02-21 | CVE-2021-25055 | Cross-site Scripting vulnerability in Feedwordpress Project Feedwordpress The FeedWordPress plugin before 2022.0123 is affected by a Reflected Cross-Site Scripting (XSS) within the "visibility" parameter. | 4.3 |
2019-08-28 | CVE-2015-9358 | Cross-site Scripting vulnerability in Feedwordpress Project Feedwordpress 2014.0805 The feedwordpress plugin before 2015.0514 for WordPress has XSS via add_query_arg() and remove_query_arg(). | 4.3 |
2015-05-21 | CVE-2015-4018 | SQL Injection vulnerability in Feedwordpress Project Feedwordpress 2014.0805 SQL injection vulnerability in feedwordpresssyndicationpage.class.php in the FeedWordPress plugin before 2015.0514 for WordPress allows remote authenticated users to execute arbitrary SQL commands via the link_ids[] parameter in an Update action in the syndication.php page to wp-admin/admin.php. | 6.5 |