← back
CVE-2021-25055CWE-79

FeedWordPress < 2022.0123 - Reflected Cross-Site Scripting (XSS)

18Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 2.3%
exploitation probability
2.3%top 18% of all CVEs
observed exploitation
nono source reports it
The FeedWordPress plugin before 2022.0123 is affected by a Reflected Cross-Site Scripting (XSS) within the "visibility" parameter.
Affected products
Unknown · FeedWordPress