Cross-Site Scripting Vulnerability in Social Sharing Toolkit Plugin for WordPress
CVE-2013-6280
Currently unrated
Key Information:
- Vendor
Wordpress
- Vendor
- CVE Published:
- 25 October 2013
What is CVE-2013-6280?
The Social Sharing Toolkit plugin for WordPress suffers from a cross-site scripting (XSS) vulnerability that enables remote attackers to inject arbitrary web scripts or HTML. This flaw arises from unspecified vectors, making it a significant risk for users of the plugin prior to version 2.1.2. Attackers exploiting this vulnerability could manipulate web content or execute malicious scripts in the context of the user’s session.