İçeriğe atla
Noroxi

RSS Aggregator – RSS Import, News Feeds, Feed to Post, and Autoblogging

wp-rss-aggregator · eklenti

RSS Aggregator – RSS Import, News Feeds, Feed to Post, and Autoblogging için bilinen güvenlik açıkları. Sitenizde bu bileşenin hangi sürümünün çalıştığını WP Lens ile saniyede öğrenin.

8 bilinen açık

son kayıt 7 Mar 2026

Güvenlik açıkları

  • CVE-2026-1216

    RSS Aggregator <= 5.0.10 - Reflected Cross-Site Scripting via 'template' Parameter

    Yüksek 7.2
  • CVE-2025-14745

    RSS Aggregator – RSS Import, News Feeds, Feed to Post, and Autoblogging <= 5.0.10 - Authenticated (Contributor+) Stored Cross-Site Scripting via wp-rss-aggregat

    Orta 6.4
  • CVE-2026-2433

    RSS Aggregator – RSS Import, News Feeds, Feed to Post, and Autoblogging <= 5.0.11 - Unauthenticated DOM-Based Reflected Cross-Site Scripting via postMessage

    Orta 6.1
  • CVE-2025-14375

    RSS Aggregator – RSS Import, News Feeds, Feed to Post, and Autoblogging <= 5.0.10 - Reflected Cross-Site Scripting via className

    Orta 6.1
  • CVE-2024-9583

    RSS Aggregator – RSS Import, News Feeds, Feed to Post, and Autoblogging <= 4.23.12 - Missing Authorization

    Orta 5.4
  • CVE-2024-0630

    WP RSS Aggregator <= 4.23.4 - Authenticated (Admin+) Stored Cross-Site Scripting via RSS Feed Source

    Orta 4.8
  • CVE-2024-6621

    WP RSS Aggregator <= 4.23.11 - Missing Authorization to Authenticated (Subscriber+) Feed State Update

    Orta 4.3
  • CVE-2024-0628

    The WP RSS Aggregator plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 4.23.5 via the

    Düşük 3.8

← Dizine dön