Easy Social Icons

Information

Software Type Plugin
Software Slug easy-social-icons (view on wordpress.org)
Software Status Active
Software Author cybernetikz
Software Website www.cybernetikz.com
Software Downloads 749,781
Software Active Installs 30,000
Software Record Last Updated July 26, 2024

12 Vulnerabilities

5.5
CVE ID Unknown
Apr 11, 2022
Researcher: Unknown
5.5
CVE ID Unknown
Apr 11, 2022
Researcher: Unknown
6.1
CVE ID Unknown
Sep 2, 2021
Researcher: WPScanTeam
6.1
CVE ID Unknown
Sep 1, 2021
Researchers:
7.2
CVE ID Unknown
Jul 22, 2015
Researchers: Pozdrawiam, Marcin Probola
Title Status CVE ID CVSS Researchers Date
Easy Social Icons <= 3.2.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via shortcode Patched CVE-2023-48336 6.4 Ngô Thiên An (ancorn_) November 23, 2023
Easy Social Icons <= 3.2.4 - Missing Authorization via cnss_save_ajax_order Patched CVE-2023-33998 4.3 Nguyen Anh Tien November 7, 2023
Easy Social Icons <= 3.1.4 - Admin+ Cross-Site Scripting Patched 5.5 Unknown April 11, 2022
Easy Social Icons <= 3.2.0 - Authenticated (Admin+) Cross-Site Scripting and Missing Authorization Checks Patched 7.3 April 11, 2022
Easy Social Icons <= 3.2.2 - Admin+ Cross-Site Scripting Patched 5.5 Unknown April 11, 2022
Easy Social Icons <= 3.2.0 - Admin+ Stored Cross-Site Scripting Patched CVE-2022-0840 5.5 qerogram March 21, 2022
Easy Social Icons <= 3.1.3 - Admin+ SQL Injection Patched CVE-2022-0887 5.5 qerogram March 8, 2022
Easy Social Icons <= 3.1.2 - Reflected Cross-Site Scripting Patched 6.1 WPScanTeam September 2, 2021
Easy Social Icons <= 3.0.9 - Reflected Cross-Site Scripting Patched 6.1 September 1, 2021
Easy Social Icons <= 3.0.8 – Reflected Cross-Site Scripting Patched CVE-2021-39322 6.1 Ram September 1, 2021
Easy Social Icons <= 1.2.3.1 - SQL Injection Patched 7.2 Pozdrawiam, Marcin Probola July 22, 2015
Easy Social Icons <= 1.2.2 - Cross-Site Request Forgery to Stored Cross-Site Scripting Patched CVE-2015-2084 8.8 Eric Flokstra - ITsec Security Services February 19, 2015

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation