FeedWordPress < 2022.0123 - Reflected Cross-Site Scripting (XSS)
18Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 2.3%
exploitation probability
2.3%top 18% of all CVEs
observed exploitation
nono source reports it
The FeedWordPress plugin before 2022.0123 is affected by a Reflected Cross-Site Scripting (XSS) within the "visibility" parameter.
Affected products
Unknown · FeedWordPress