Vulnerabilities and security researches forwd-instagram-feed wd-instagram-feed
Direction: ascendingJun 06, 2024
10WebSocial # CVE-2018-10301
- CVE, Research URL
- Home page URL
- Application
- Date
- Apr 23, 2018
- Research Description
- Cross-site scripting (XSS) vulnerability in the Web-Dorado Instagram Feed WD plugin before 1.3.1 Premium for WordPress allows remote attackers to inject arbitrary web script or HTML by passing payloads in a comment on an Instagram post.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
10WebSocial # CVE-2021-25047
- CVE, Research URL
- Home page URL
- Application
- Date
- Jan 10, 2022
- Research Description
- The 10Web Social Photo Feed WordPress plugin before 1.4.29 was affected by a reflected Cross-Site Scripting (XSS) vulnerability in the wdi_apply_changes admin page, allowing an attacker to perform such attack against any logged in users
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
10WebSocial # CVE-2018-10300
- CVE, Research URL
- Home page URL
- Application
- Date
- Apr 23, 2018
- Research Description
- Cross-site scripting (XSS) vulnerability in the Web-Dorado Instagram Feed WD plugin before 1.3.1 for WordPress allows remote attackers to inject arbitrary web script or HTML by passing payloads in an Instagram profile's bio.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable