CVE-2026-8976
- EPSS 0.29%
- Veröffentlicht 05.06.2026 23:28:28
- Zuletzt bearbeitet 08.06.2026 14:57:14
The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 5.1.7. This is due to the plugin not properly verifying ...
CVE-2025-11467
- EPSS 0.22%
- Veröffentlicht 11.12.2025 01:55:32
- Zuletzt bearbeitet 15.04.2026 00:35:42
The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions up to, and including, 5.1.1 via the feedzy_lazy_load function. Th...
- EPSS 0.27%
- Veröffentlicht 23.10.2025 12:32:32
- Zuletzt bearbeitet 15.04.2026 00:35:42
The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 5.1.0 via the 'feedzy_sanitize_feeds' function. T...
CVE-2023-6805
- EPSS 0.34%
- Veröffentlicht 17.04.2024 13:15:08
- Zuletzt bearbeitet 08.04.2026 18:18:42
The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions up to, and including, 4.4.7 via the fetch_feed functionality. Thi...
CVE-2023-6877
- EPSS 0.35%
- Veröffentlicht 07.04.2024 02:15:07
- Zuletzt bearbeitet 08.04.2026 18:18:44
The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and including, 4.3.3 due to insuff...
CVE-2024-1317
- EPSS 0.71%
- Veröffentlicht 29.02.2024 01:43:47
- Zuletzt bearbeitet 08.04.2026 19:20:36
The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to SQL Injection via the ‘search_key’ parameter in all versions up to, and including, 4.4.2 due to insufficient escapi...
CVE-2024-1318
- EPSS 0.52%
- Veröffentlicht 29.02.2024 01:43:47
- Zuletzt bearbeitet 08.04.2026 17:18:17
The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'feedzy_wizard_step_process' and 'import...
CVE-2024-1092
- EPSS 0.45%
- Veröffentlicht 05.02.2024 22:16:07
- Zuletzt bearbeitet 08.04.2026 18:20:26
The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to unauthorized data modification due to a missing capability check on the feedzy dashboard in all versions up to, and...
CVE-2023-6801
- EPSS 0.32%
- Veröffentlicht 06.01.2024 10:15:46
- Zuletzt bearbeitet 08.04.2026 19:19:00
The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 4.3.2 due to insufficient inpu...
CVE-2023-6798
- EPSS 0.29%
- Veröffentlicht 06.01.2024 10:15:45
- Zuletzt bearbeitet 08.04.2026 19:19:00
The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to unauthorized settings update due to a missing capability check when updating settings in all versions up to, and in...