cbcvebase.

Wpmet Wp Social Login And Register Social Counter vulnerabilities

3 known vulnerabilities affecting wpmet/wp_social_login_and_register_social_counter.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2022-47160P4MEDIUMCVSS 6.5fixed in 2.0.0≥ n/a, ≤ 1.9.02024-01-19
CVE-2022-47160 [MEDIUM] CWE-200 CVE-2022-47160: Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wpmet Wp Social Login an Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wpmet Wp Social Login and Register Social Counter.This issue affects Wp Social Login and Register Social Counter: from n/a through 1.9.0.
nvd
CVE-2024-1763P4MEDIUMCVSS 5.3≤ 3.0.02024-03-13
CVE-2024-1763 [MEDIUM] CWE-862 CVE-2024-1763: The Wp Social Login and Register Social Counter plugin for WordPress is vulnerable to unauthorized m The Wp Social Login and Register Social Counter plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the /wp_social/v1/ REST API endpoint in all versions up to, and including, 3.0.0. This makes it possible for unauthenticated attackers to enable and disable certain providers for the social share
nvd
CVE-2025-1506P4MEDIUMCVSS 4.3fixed in 3.1.12025-02-28
CVE-2025-1506 [MEDIUM] CWE-352 CVE-2025-1506: The Wp Social Login and Register Social Counter plugin for WordPress is vulnerable to Cross-Site Req The Wp Social Login and Register Social Counter plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.0. This is due to missing or incorrect nonce validation on the counter_access_key_setup() function. This makes it possible for unauthenticated attackers to update social login provider settings via
nvd
Wpmet Wp Social Login And Register Social Counter vulnerabilities | cvebase