The Feed Them Social plugin for WordPress has a security issue that could let unauthenticated attackers change settings on a website. This issue exists in versions 2.9.9 and earlier. It happens because the plugin isn’t checking to make sure that requests are legitimate. Attackers can take advantage of this by making a website administrator click on a link they provide.