Vulnerabilities > Nextscripts > Social Networks Auto Poster > 4.4.3

DATE CVE VULNERABILITY TITLE RISK
2024-07-22 CVE-2024-37275 Unspecified vulnerability in Nextscripts Social Networks Auto Poster
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in NextScripts allows Reflected XSS.This issue affects NextScripts: from n/a through 4.4.6.
network
low complexity
nextscripts
6.1
2024-05-22 CVE-2024-1446 Cross-Site Request Forgery (CSRF) vulnerability in Nextscripts Social Networks Auto Poster
The NextScripts: Social Networks Auto-Poster plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.4.3.
network
low complexity
nextscripts CWE-352
4.3
2024-05-22 CVE-2024-1762 Cross-site Scripting vulnerability in Nextscripts Social Networks Auto Poster
The NextScripts: Social Networks Auto-Poster plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the HTTP_USER_AGENT header in all versions up to, and including, 4.4.3 due to insufficient input sanitization and output escaping.
network
low complexity
nextscripts CWE-79
6.1
2024-05-22 CVE-2024-2088 Unspecified vulnerability in Nextscripts Social Networks Auto Poster
The NextScripts: Social Networks Auto-Poster plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.4.3 via the 'nxs_getExpSettings' function.
network
low complexity
nextscripts
6.5