plugin

Social Media Builder Vulnerabilities

1 known security issue reported for the Social Media Builder WordPress plugin. Most recent disclosed Mar 15, 2024.

1 high

Running Social Media Builder on your site? Check whether your installed version is affected.

Scan your site free

Social Media Share Buttons <= 2.1.0 - Authenticated (Subscriber+) PHP Object Injection

high

The Social Media Share Buttons plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 2.1.0 via deserialization of untrusted input through the attachmentUrl parameter. This makes it possible for authenticated attackers, with subscriber-level access and above, to inject a PHP Ob...

CVSS:
8.8
Affected:
up to 2.1.0
Fix:
No patched version reported
Disclosed:
Mar 15, 2024

CVE-2024-1685 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database