The Enjoy Social Feed plugin for WordPress website WordPress plugin through 6.2.2 does not have authorisation and CSRF in various function hooked to admin_init, allowing unauthenticated users to call them and unlink arbitrary users Instagram Account for example
History

Mon, 05 May 2025 19:15:00 +0000

Type Values Removed Values Added
First Time appeared Mediabetaprojects
Mediabetaprojects enjoy Social Feed
Weaknesses CWE-352
CPEs cpe:2.3:a:mediabetaprojects:enjoy_social_feed:*:*:*:*:*:wordpress:*:*
Vendors & Products Mediabetaprojects
Mediabetaprojects enjoy Social Feed

cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published: 2024-03-18T19:05:42.163Z

Updated: 2024-08-28T15:36:30.412Z

Reserved: 2024-01-22T10:25:55.631Z

Link: CVE-2024-0779

cve-icon Vulnrichment

Updated: 2024-08-01T18:18:18.348Z

cve-icon NVD

Status : Analyzed

Published: 2024-03-18T19:15:06.390

Modified: 2025-05-05T18:56:44.187

Link: CVE-2024-0779

cve-icon Redhat

No data.