Smash Balloon Social Post Feed < 4.1.1 - Authenticated Reflected Cross-Site Scripting (XSS)
CVE-2021-25065
5.4MEDIUM
What is CVE-2021-25065?
The Smash Balloon Social Post Feed WordPress plugin before 4.1.1 was affected by a reflected XSS in custom-facebook-feed in cff-top admin page.
Affected Version(s)
Smash Balloon Social Post Feed 4.1.1