Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Vulnerability List
Found 58 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2023-41849 WordPress Posts Like Dislike plugin <= 1.1.0 - Broken Access Control vulnerability Happy CodersPosts Like Dislike Medium 5.3 2024-12-13 14:24:20 Deep Dive
CVE-2023-47820 WordPress WP Like Button plugin <= 1.7.0 - Broken Access Control vulnerability CRUDLabWP Like Button Medium 4.3 2024-12-09 11:30:43 Deep Dive
CVE-2022-4974 Freemius SDK <= 2.4.2 - Missing Authorization Checks dashlabsltdYASR – Yet Another Star Rating Plugin for WordPress Medium 6.3 2024-10-16 06:43:30 Deep Dive
CVE-2024-44064 WordPress Like Button Rating LikeBtn plugin <= 2.6.53 - Reflected Cross Site Scripting (XSS) vulnerability LikeBtnLike Button Rating High 7.1 2024-09-17 22:35:58 Deep Dive
CVE-2024-5224 Easy Social Like Box – Popup – Sidebar Widget <= 4.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode johnnash1975Easy Social Like Box – Popup – Sidebar Widget Medium 6.4 2024-06-06 02:03:00 Deep Dive
CVE-2024-3583 Simple Like Page Plugin <= 1.5.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode topdevsSimple Like Page Plugin – Fast & Privacy-Friendly Page Embeds Medium 6.4 2024-05-30 10:59:29 Deep Dive
CVE-2024-5384 SourceCodester Facebook News Feed Like index.php sql injection SourceCodesterFacebook News Feed Like High 7.3 2024-05-26 23:31:04 Deep Dive
CVE-2024-25906 WordPress Comments Like Dislike plugin <= 1.2.2 - IP Restriction Bypass Vulnerability vulnerability WP Happy CodersComments Like Dislike Medium 4.3 2024-05-17 08:22:32 Deep Dive
CVE-2024-33917 WordPress WTI Like Post plugin <= 1.4.6 - IP Restriction Bypass Vulnerability vulnerability webtechideasWTI Like Post Medium 5.3 2024-05-17 08:13:54 Deep Dive
CVE-2024-32815 WordPress All-in-one Like Widget plugin <= 2.2.7 - Cross Site Scripting (XSS) vulnerability Jeroen PetersAll-in-one Like Widget Medium 5.9 2024-04-24 08:36:21 Deep Dive
CVE-2024-31387 WordPress Popup Likebox plugin <= 3.7.2 - Cross-Site Scripting (XSS) vulnerability Popup LikeBox TeamPopup Like box Medium 5.9 2024-04-11 12:47:14 Deep Dive
CVE-2024-1214 Easy Social Feed <= 6.5.4 - Cross-Site Request Forgery sjavedEasy Social Feed – Social Photos Gallery and Post Feed for WordPress Medium 4.3 2024-03-12 23:33:51 Deep Dive
CVE-2024-1278 Easy Social Feed – Social Photos Gallery – Post Feed – Like Box <= 6.5.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode sjavedEasy Social Feed – Social Photos Gallery and Post Feed for WordPress Medium 6.4 2024-03-12 23:33:51 Deep Dive
CVE-2024-1213 Easy Social Feed <= 6.5.4 - Cross-Site Request Forgery sjavedEasy Social Feed – Social Photos Gallery and Post Feed for WordPress Medium 5.4 2024-03-12 23:33:50 Deep Dive
CVE-2024-1028 SourceCodester Facebook News Feed Like Post cross site scripting SourceCodesterFacebook News Feed Like Low 3.5 2024-01-30 04:31:05 Deep Dive
CVE-2024-1027 SourceCodester Facebook News Feed Like Post unrestricted upload SourceCodesterFacebook News Feed Like Medium 6.3 2024-01-30 03:00:07 Deep Dive
CVE-2024-1024 SourceCodester Facebook News Feed Like New Account cross site scripting SourceCodesterFacebook News Feed Like Low 3.5 2024-01-30 00:31:05 Deep Dive
CVE-2023-6883 Easy Social Feed <= 6.5.2 - Missing Authorization to Settings Modification sjavedEasy Social Feed – Social Photos Gallery and Post Feed for WordPress Medium 4.3 2024-01-11 06:49:33 Deep Dive
CVE-2023-6250 BestWebSoft's Like & Share < 2.74 - Unauthenticated Password Protected Post Read UnknownBestWebSoft's Like & Share--2023-12-26 18:33:11 Deep Dive
CVE-2023-4888 Simple Like Page Plugin <= 1.5.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode topdevsSimple Like Page Plugin – Fast & Privacy-Friendly Page Embeds Medium 6.4 2023-11-07 11:31:10 Deep Dive