CVE-2015-9433: Wp Social Bookmarking Light Project Wp Social Bookmarking Light

Medium severity, CVSS 6.5. EPSS: 0.9% chance of exploitation in the next 30 days.

The wp-social-bookmarking-light plugin before 1.7.10 for WordPress has CSRF with resultant XSS via configuration parameters for Tumblr, Twitter, Facebook, etc. in wp-admin/options-general.php?page=wp-social-bookmarking-light%2Fmodules%2Fadmin.php.

Affected products

Published 2019-09-26. Last modified 2026-06-17.