Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.4 CVE-2025-4133 The Blog2Social: Social Media Auto Post & Scheduler WordPress plugin before 8.4.0 does not escape the title of posts when outputting them in a dashbo… Blog2social 8.4.0+ Fix from $1,6002025-05-22 MEDIUM 5.4 CVE-2024-7302 The Blog2Social: Social Media Auto Post & Scheduler plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 3gp2 file uploads in all ve… Blog2social 7.5.5+ Fix from $1,6002024-08-01 CRITICAL 9.9 CVE-2024-3549 The Blog2Social: Social Media Auto Post & Scheduler plugin for WordPress is vulnerable to SQL Injection via the 'b2sSortPostType' parameter in all ve… Blog2social 7.4.2+ Fix from $2,3002024-06-11 MEDIUM 5.3 CVE-2024-3678 The Blog2Social: Social Media Auto Post & Scheduler plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and i… Blog2social 7.5.0+ Fix from $1,6002024-04-26 MEDIUM 6.1 CVE-2023-40554 Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Blog2Social, Adenion Blog2Social: Social Media Auto Post & Scheduler plugin <= 7.2.0 ve… Blog2social after 7.2.0 Fix from $1,6002023-09-06 MEDIUM 6.1 CVE-2023-3936 The Blog2Social WordPress plugin before 7.2.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected … Blog2social 7.2.1+ Fix from $1,6002023-08-21 HIGH 8.8 CVE-2022-3246 The Blog2Social: Social Media Auto Post & Scheduler WordPress plugin before 6.9.10 does not properly sanitise and escape a parameter before using it … Blog2social 6.9.10+ Fix from $1,9502022-10-25 MEDIUM 6.5 CVE-2022-3247 The Blog2Social: Social Media Auto Post & Scheduler WordPress plugin before 6.9.10 does not have authorisation in an AJAX action, and does not ensure… Blog2social 6.9.10+ Fix from $1,6002022-10-25 MEDIUM 6.1 CVE-2021-24956 The Blog2Social: Social Media Auto Post & Scheduler WordPress plugin before 6.8.7 does not sanitise and escape the b2sShowByDate parameter before out… Blog2social 6.8.7+ Fix from $1,6002021-12-21 HIGH 8.8 CVE-2021-24137 Unvalidated input in the Blog2Social WordPress plugin, versions before 6.3.1, lead to SQL Injection in the Re-Share Posts feature, allowing authentic… Blog2social 6.3.1+ Fix from $1,9502021-03-18 MEDIUM 6.1 CVE-2019-17550 The Blog2Social plugin before 5.9.0 for WordPress is affected by: Cross Site Scripting (XSS). The impact is: Allows an attacker to execute arbitrary … Blog2social 5.9.0+ Fix from $1,6002019-11-13 CRITICAL 9.8 CVE-2019-13572 The Adenion Blog2Social plugin through 5.5.0 for WordPress allows SQL Injection. Blog2social after 5.5.0 Fix from $2,3002019-08-01 MEDIUM 6.1 CVE-2019-9576 The Blog2Social plugin before 5.0.3 for WordPress allows wp-admin/admin.php?page=blog2social-ship XSS. Blog2social 5.0.3+ Fix from $1,6002019-03-05