VendorsSmash Ballooncustom_twitter_feedsany version
Vulnerabilities

Smash Balloon SmashBalloon Custom Twitter Feeds 1.8.4 for WordPress any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2022-33974
WordPress Custom Twitter Feeds (Tweets Widget) Plugin <= 1.8.4 is vulnerable to Cross Site Request Forgery (CSRF)
Published 2023-05-29 · Modified
8.8EPSS 0.002
CVE-2023-52136
WordPress Custom Twitter Feeds (Tweets Widget) Plugin <= 2.1.2 is vulnerable to Cross Site Request Forgery (CSRF)
Published 2024-01-05 · Modified
8.8EPSS 0.002
CVE-2024-49685
WordPress Custom Twitter Feeds plugin <= 2.2.3 - Cross Site Request Forgery (CSRF) vulnerability
Published 2024-10-31 · Modified
8.8EPSS 0.002
CVE-2024-8983
Custom Twitter Feeds < 2.2.3 - Admin+ Stored XSS
Published 2024-10-08 · Analyzed
4.8EPSS 0.004
CVE-2024-0379
Custom Twitter Feeds – A Tweets Widget or X Feed Widget <= 2.2.1 - Cross-Site Request Forgery to Plugin Options Update
Published 2024-02-20 · Modified
4.3EPSS 0.010