Nextscripts
nextscripts
10 CVEs • 1 product
Products (1)
Click to collapseToggle
Products (1)
Click to collapse
CVEs (10)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Nextscripts 1Social Networks Auto Poster Feb 7, 2025 Oct 16, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 The NextScripts: Social Networks Auto-Poster plugin for WordPress is vulnerable to authorization bypass due to missing capability checks on multiple user privilege/security functions provided in versions up to, and inclu...Show more |
1Nextscripts 1Social Networks Auto Poster Apr 23, 2026 Jul 22, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NextScripts NextScripts social-networks-auto-poster-facebook-twitter-g allows DOM-Based XSS.This issue affects NextScr...Show more |
1Nextscripts 1Social Networks Auto Poster Apr 8, 2026 May 22, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 The NextScripts: Social Networks Auto-Poster plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.4.3 via the 'nxs_getExpSettings' function. This makes it possible...Show more |
1Nextscripts 1Social Networks Auto Poster Apr 8, 2026 May 22, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 The NextScripts: Social Networks Auto-Poster plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the HTTP_USER_AGENT header in all versions up to, and including, 4.4.3 due to insufficient input sanitiza...Show more |
1Nextscripts 1Social Networks Auto Poster Apr 8, 2026 May 22, 2024 N/A· v4 4.3 MEDIUM· v3 N/A· v2 The NextScripts: Social Networks Auto-Poster plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.4.3. This is due to missing or incorrect nonce validation on the nxssn...Show more |
1Nextscripts 1Social Networks Auto Poster Apr 28, 2026 Dec 15, 2023 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NextScripts NextScripts: Social Networks Auto-Poster allows Reflected XSS.This issue affects NextScripts: Social Netwo...Show more |
1Nextscripts 1Social Networks Auto Poster Nov 21, 2024 Feb 1, 2022 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 The NextScripts: Social Networks Auto-Poster WordPress plugin before 4.3.25 does not have CSRF check in place when deleting items, allowing attacker to make a logged in admin delete arbitrary posts via a CSRF attack |
1Nextscripts 1Social Networks Auto Poster Nov 21, 2024 Feb 1, 2022 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 The NextScripts: Social Networks Auto-Poster WordPress plugin before 4.3.24 does not sanitise and escape logged requests before outputting them in the related admin dashboard, leading to an Unauthenticated Stored Cross-S...Show more |
1Nextscripts 1Social Networks Auto Poster Nov 21, 2024 Nov 1, 2021 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 The NextScripts: Social Networks Auto-Poster <= 4.3.20 WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the $_REQUEST['page'] parameter which is echoed out on inc/nxs_class_snap.php by supplying the a...Show more |
1Nextscripts 1Social Networks Auto Poster Jun 17, 2026 Mar 22, 2019 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 The social-networks-auto-poster-facebook-twitter-g plugin before 4.2.8 for WordPress has wp-admin/admin.php?page=nxssnap-reposter&action=edit item XSS. |