URL Shortener Plugin For WordPress

Information

Software Type Plugin
Software Slug exact-links (view on wordpress.org)
Software Status Removed
Software Author rupok98
Software Website wordpress.org
Software Downloads 9,597
Software Active Installs 600
Software Record Last Updated January 19, 2026

6 Vulnerabilities

Title Status CVE ID CVSS Researchers Date
URL Shortener Plugin For WordPress <= 3.0.7 - Unauthenticated SQL Injection Unpatched CVE-2025-10738 9.8 ifoundbug December 12, 2025
URL Shortener Plugin For WordPress <= 3.0.7 - Missing Authorization to Authenticated (Subscriber+) Link Manipulation Unpatched CVE-2025-10740 6.3 ifoundbug October 23, 2025
URL Shortener <= 3.0.7 - Missing Authorization Unpatched CVE-2025-28965 5.3 ch4r0n July 15, 2025
URL Shortener <= 3.0.7 - Unauthenticated SQL Injection Unpatched CVE-2025-28959 7.5 ch4r0n July 11, 2025
URL Shortener <= 3.0.7 - Unauthenticated PHP Object Injection Unpatched CVE-2025-28961 8.1 ch4r0n July 11, 2025
URL Shortener <= 3.0.7 - Unauthenticated Server-Side Request Forgery Unpatched CVE-2025-28963 7.2 ch4r0n July 4, 2025

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation