Input validation vulnerability in Social Feed | Custom Feed for Social Media Networks 2.2.0

The Social Feed plugin for WordPress has a vulnerability that can be exploited by unauthenticated attackers. This vulnerability affects versions of the plugin up to and including 2.2.0. The vulnerability allows attackers to inject web scripts into pages and if they can successfully trick a user into performing an action such as clicking a link, the scripts can execute. This is due to the plugin not properly sanitizing and escaping input and output.

Detected in:

Social Feed | Custom Feed for Social Media Networks open vulnerable versions: >= * <= 2.2.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.