Feed Them Social < 3.0.1 - Reflected Cross-Site Scripting
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 0.7%
exploitation probability
0.7%top 52% of all CVEs
observed exploitation
nono source reports it
The Feed Them Social WordPress plugin before 3.0.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting
Affected products
Unknown · Feed Them Social – for Twitter feed, Youtube and more