Skip to content

Known CVE

Blog2Social < 6.8.7 - Cross-Site Scripting

The Blog2Social: Social Media Auto Post & Scheduler WordPress plugin before 6.8.7 does not sanitise and escape the b2sShowByDate parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting issue.

CVE-2021-24956

Medium2021CVSS 6.1CWE-79

cve2021 · wordpress · wp-plugin · xss · authenticated · wpscan · adenion · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website