GHSA-cgq8-7cm9-h3q8MediumCVSS 5.3

The Social Web Suite WordPress plugin through 4.1.12 does not restrict which of its settings may...

Published
October 9, 2026
Last Modified
October 9, 2026

🔗 CVE IDs covered (1)

📋 Description

The Social Web Suite WordPress plugin through 4.1.12 does not restrict which of its settings may be written through an unauthenticated endpoint, allowing attackers to overwrite arbitrary Social Web Suite WordPress plugin through 4.1.12 options, including the shared secret that guards its own privileged endpoints.

🔗 References (3)