VendorsHeateorsocial_loginall versions
Vulnerabilities

Heateor Social Login

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2024-10020
Heateor Social Login WordPress <= 1.1.35 - Authentication Bypass via Disqus OAuth provider
Published 2024-11-06 · Analyzed
8.1EPSS 0.005
CVE-2024-35706
WordPress Heateor Social Login WordPress plugin <= 1.1.32 - Cross Site Scripting (XSS) vulnerability
Published 2024-06-08 · Modified
7.1EPSS 0.003
CVE-2024-24712
WordPress Heateor Social Login Plugin <= 1.1.30 is vulnerable to Cross Site Scripting (XSS)
Published 2024-02-10 · Modified
6.5EPSS 0.003
CVE-2024-35707
WordPress Heateor Social Login WordPress plugin <= 1.1.32 - Cross Site Scripting (XSS) vulnerability
Published 2024-06-08 · Modified
6.5EPSS 0.003
CVE-2024-32674
Heateor Social Login WordPress prior to 1.1.32 contains a cross-site scripting vulnerability. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who accessed the website using the product.
Published 2024-05-08 · Analyzed
5.4EPSS 0.003