Extension WordPress
Vulnérabilités Social Sharing Plugin – Kiwi
Cette page rassemble les failles publiées pour Social Sharing Plugin – Kiwi, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Social Sharing Plugin – Kiwi
4 fiches
Kiwi <= 2.1.8 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Kiwi plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.1.8 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above,…
*-2.1.8
Non indiqué
05/09/2025
Social Sharing Plugin – Kiwi <= 2.1.7 – Information Disclosure
The Social Sharing Plugin – Kiwi plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.1.7 via the 'kiwi-nw-pinterest' class. This makes it possible for unauthenticated attackers to view limited content from…
*-2.1.7
2.1.8
08/07/2024
Kiwi Social Sharing 2.1.0 – 2.1.2 – Arbitrary Options Change
The Kiwi Social Share plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the kiwi_social_share_get_option() function called via the kiwi_social_share_get_option AJAX action in version 2.1.0. This makes it possible for unauthenticated attackers…
2.1.0-2.1.2
2.1.3
04/06/2021
Kiwi Social Share <= 2.0.10 – Arbitrary Options Update
The Kiwi Social Share plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the kiwi_social_share_get_option() function called via the kiwi_social_share_get_option AJAX action in versions up to, and including, 2.0.10. This makes it…
*-2.0.10
2.0.11
12/11/2018
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.