CVE-2015-9433: Wp Social Bookmarking Light Project Wp Social Bookmarking Light
Medium severity, CVSS 6.5. EPSS: 0.9% chance of exploitation in the next 30 days.
The wp-social-bookmarking-light plugin before 1.7.10 for WordPress has CSRF with resultant XSS via configuration parameters for Tumblr, Twitter, Facebook, etc. in wp-admin/options-general.php?page=wp-social-bookmarking-light%2Fmodules%2Fadmin.php.
Affected products
- Wp Social Bookmarking Light Project Wp Social Bookmarking Light: before 1.7.10 (fixed in 1.7.10)
Published 2019-09-26. Last modified 2026-06-17.