Wpzoom Social Icons Widget vulnerabilities
2 known vulnerabilities affecting wpzoom/social_icons_widget.
Total CVEs
2
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2024-30464P2HIGHCVSS 8.8PoCfixed in 4.2.162024-06-09
CVE-2024-30464 [HIGH] CWE-862 CVE-2024-30464: Missing Authorization vulnerability in WPZOOM Social Icons Widget & Block by WPZOOM.This issue affec
Missing Authorization vulnerability in WPZOOM Social Icons Widget & Block by WPZOOM.This issue affects Social Icons Widget & Block by WPZOOM: from n/a through 4.2.15.
nvd
CVE-2024-2189P4MEDIUMCVSS 6.1fixed in 4.2.182024-05-21
CVE-2024-2189 [MEDIUM] CWE-79 CVE-2024-2189: The Social Icons Widget & Block by WPZOOM WordPress plugin before 4.2.18 does not sanitise and escap
The Social Icons Widget & Block by WPZOOM WordPress plugin before 4.2.18 does not sanitise and escape some of its Widget settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)
nvd