plugin

Amty Thumb Recent Post Vulnerabilities

1 known security issue reported for the Amty Thumb Recent Post WordPress plugin. Most recent disclosed Nov 18, 2017.

1 medium

Running Amty Thumb Recent Post on your site? Check whether your installed version is affected.

Scan your site free

amtyThumb posts <= 8.2.0 - Cross-Site Scripting

medium

XSS exists in the amtyThumb amty-thumb-recent-post (aka amtyThumb posts or wp-thumb-post) plugin 8.1.3 for WordPress via the query string to amtyThumbPostsAdminPg.php. An attempt to patch this vulnerability was made with 8.2.0, however, it is still exploitable by users who are logged-in.

CVSS:
5.4
Affected:
up to 8.2.0
Fix:
No patched version reported
Disclosed:
Nov 18, 2017

CVE-2017-17059 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database