Vulnerabilities > Supsystic > Social Share Buttons

DATE CVE VULNERABILITY TITLE RISK
2024-09-26 CVE-2024-47330 Missing Authorization vulnerability in Supsystic Slider and Social Share Buttons
Missing Authorization vulnerability in Supsystic Slider by Supsystic, Supsystic Social Share Buttons by Supsystic.This issue affects Slider by Supsystic: from n/a through 1.8.6; Social Share Buttons by Supsystic: from n/a through 2.2.9.
network
low complexity
supsystic CWE-862
8.8
2022-07-22 CVE-2022-27235 Unspecified vulnerability in Supsystic Social Share Buttons
Multiple Broken Access Control vulnerabilities in Social Share Buttons by Supsystic plugin <= 2.2.3 at WordPress.
network
low complexity
supsystic
8.8
2022-07-22 CVE-2022-33960 Unspecified vulnerability in Supsystic Social Share Buttons
Multiple Authenticated (subscriber or higher user role) SQL Injection (SQLi) vulnerabilities in Social Share Buttons by Supsystic plugin <= 2.2.3 at WordPress.
network
low complexity
supsystic
8.8
2022-06-27 CVE-2022-1653 Unspecified vulnerability in Supsystic Social Share Buttons
The Social Share Buttons by Supsystic WordPress plugin before 2.2.4 does not perform CSRF checks in it's ajax endpoints and admin pages, allowing an attacker to trick any logged in user to manipulate or change the plugin settings, as well as create, delete and rename projects and networks.
network
low complexity
supsystic
4.3
2022-06-02 CVE-2021-36890 Cross-Site Request Forgery (CSRF) vulnerability in Supsystic Social Share Buttons
Cross-Site Request Forgery (CSRF) vulnerability in Social Share Buttons by Supsystic plugin <= 2.2.2 at WordPress.
network
low complexity
supsystic CWE-352
4.3