Vulnerabilities > Wpkube > Kiwi Social Share > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-06-07 CVE-2021-4362 Missing Authorization vulnerability in Wpkube Kiwi Social Share 2.1.0
The Kiwi Social Share plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the kiwi_social_share_get_option() function called via the kiwi_social_share_get_option AJAX action in version 2.1.0.
network
low complexity
wpkube CWE-862
critical
9.8