The Enjoy Social Feed plugin for WordPress website WordPress plugin through 6.2.2 does not have authorisation and CSRF in various function hooked to admin_init, allowing unauthenticated users to call them and unlink arbitrary users Instagram Account for example
Metrics
Affected Vendors & Products
References
History
Mon, 05 May 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mediabetaprojects
Mediabetaprojects enjoy Social Feed |
|
| Weaknesses | CWE-352 | |
| CPEs | cpe:2.3:a:mediabetaprojects:enjoy_social_feed:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Mediabetaprojects
Mediabetaprojects enjoy Social Feed |
Status: PUBLISHED
Assigner: WPScan
Published: 2024-03-18T19:05:42.163Z
Updated: 2024-08-28T15:36:30.412Z
Reserved: 2024-01-22T10:25:55.631Z
Link: CVE-2024-0779
Updated: 2024-08-01T18:18:18.348Z
Status : Analyzed
Published: 2024-03-18T19:15:06.390
Modified: 2025-05-05T18:56:44.187
Link: CVE-2024-0779
No data.