NextScripts: Social Networks Auto-Poster <= 4.4.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'nxs_fbembed' Shortcode
NextScripts: Social Networks Auto-Poster
Minimum safe version
4.4.7
Update to 4.4.7 or later to address 19 fixable vulnerabilities
CVE-2026-27379
CVE-2020-36831
WordPress NextScripts plugin <= 4.4.7 - Cross Site Scripting (XSS) vulnerability
CVE-2024-1446
CVE-2024-1762
CVE-2024-2088
CVE-2023-49183
NextScripts: Social Networks Auto-Poster < 3.4.18 - CSRF to Stored XSS
NextScripts: Social Networks Auto-Poster < 4.3.18 - Insufficient Privilege Validation
NextScripts: Social Networks Auto-Poster < 4.3.26 - Reflected Cross-Site Scripting
NextScripts: Social Networks Auto-Poster <= 3.4.17 - Stored Cross-Site Scripting
NextScripts: Social Networks Auto-Poster <= 4.3.17 - Missing Authorization
NextScripts: Social Networks Auto-Poster <= 4.3.25 - Reflected Cross-Site Scripting
WordPress NextScripts: Social Networks Auto-Poster plugin <= 4.3.25 - Reflected Cross-Site Scripting (XSS) vulnerability
WordPress Social Networks Auto-Poster Plugin <= 3.4.17 - Stored XSS
WordPress NextScripts: Social Networks Auto-Poster plugin <= 4.3.17 - Insufficient Privilege Validation vulnerability
WordPress NextScripts plugin <= 4.2.7 - Cross-Site Scripting (XSS) vulnerability
NextScripts: Social Networks Auto-Poster <= 4.3.20 - Reflected Cross-Site Scripting
CVE-2021-25072
CVE-2021-24975