cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forwd-instagram-feed wd-instagram-feed

Direction: ascending
Jun 06, 2024

10WebSocial # CVE-2018-10301

CVE, Research URL

CVE-2018-10301

Application

10WebSocial

Date
Apr 23, 2018
Research Description
Cross-site scripting (XSS) vulnerability in the Web-Dorado Instagram Feed WD plugin before 1.3.1 Premium for WordPress allows remote attackers to inject arbitrary web script or HTML by passing payloads in a comment on an Instagram post.
Affected versions
max 1.4.19.
Status
vulnerable

10WebSocial # CVE-2021-25047

CVE, Research URL

CVE-2021-25047

Application

10WebSocial

Date
Jan 10, 2022
Research Description
The 10Web Social Photo Feed WordPress plugin before 1.4.29 was affected by a reflected Cross-Site Scripting (XSS) vulnerability in the wdi_apply_changes admin page, allowing an attacker to perform such attack against any logged in users
Affected versions
max 1.4.29.
Status
vulnerable

10WebSocial # CVE-2018-10300

CVE, Research URL

CVE-2018-10300

Application

10WebSocial

Date
Apr 23, 2018
Research Description
Cross-site scripting (XSS) vulnerability in the Web-Dorado Instagram Feed WD plugin before 1.3.1 for WordPress allows remote attackers to inject arbitrary web script or HTML by passing payloads in an Instagram profile's bio.
Affected versions
max 1.3.1.
Status
vulnerable