Skip to content

Known CVE

Easy Social Feed < 6.2.7 - Cross-Site Scripting

Easy Social Feed < 6.2.7 is susceptible to reflected cross-site scripting because the plugin does not sanitize and escape a parameter before outputting it back in an admin dashboard page, leading to it being executed in the context of a logged admin or editor.

CVE-2021-25120

Medium2021CVSS 6.1CWE-79

cve2021 · wordpress · wp-plugin · xss · authenticated · wpscan · easysocialfeed · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website