CVE-2013-3258: Bufferapp Digg Digg

Medium severity, CVSS 6.8. EPSS: 1.1% chance of exploitation in the next 30 days.

Cross-site request forgery (CSRF) vulnerability in he Digg Digg plugin before 5.3.5 for WordPress allows remote attackers to hijack the authentication of users for requests that modify settings via unspecified vectors.

Affected products

  • Bufferapp Digg Digg: up to and including 5.3.4; version 5.0 only; version 5.0.1 only; version 5.0.2 only; version 5.0.3 only; version 5.0.4 only; …

Published 2014-06-02. Last modified 2026-06-16.