VendorsThemeislerss_aggregator_by_feedzyall versions
Vulnerabilities

Themeisle RSS Aggregator by Feedzy

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2024-1317
RSS Aggregator by Feedzy <= 4.4.2 - Authenticated(Contributor+) SQL Injection
Published 2024-02-20 · Modified
8.8EPSS 0.007
CVE-2024-1318
RSS Aggregator by Feedzy <= 4.4.2 - Missing Authorization to Arbitrary Page Creation and Publication
Published 2024-02-20 · Modified
6.5EPSS 0.005
CVE-2023-6877
RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator <= 4.3.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Error Message
Published 2024-04-07 · Modified
6.4EPSS 0.003
CVE-2023-6805
RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator <= 4.4.7 - Authenticated(Contributor+) Blind Server-Side Request Forgery (SSRF)
Published 2024-04-17 · Modified
6.4EPSS 0.003
CVE-2023-6801
RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator <= 4.3.2 - Authenticated (Author+) Stored Cross-Site Scripting
Published 2024-01-06 · Modified
6.4EPSS 0.003
CVE-2022-4667
RSS Aggregator by Feedzy < 4.1.1 - Contributor+ Stored XSS
Published 2023-01-30 · Analyzed
5.4EPSS 0.005
CVE-2023-6798
RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator <= 4.3.2 - Missing Authorization
Published 2024-01-06 · Modified
5.4EPSS 0.003
CVE-2024-1092
RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator <= 4.4.1 - Missing Authorization
Published 2024-02-05 · Modified
4.3EPSS 0.005
CVE-2020-36758
RSS Aggregator by Feedzy <= 3.4.2 - Cross-Site Request Forgery Bypass
Published 2023-10-20 · Modified
4.3EPSS 0.004