Medium 5.9 Unfixed
2025-06-20≤ 4.6.4
WordPress WP-FB-AutoConnect plugin <= 4.6.4 - Cross Site Scripting (XSS) Vulnerability
Minimum safe version
4.6.3
Update to 4.6.3 or later to address 6 fixable vulnerabilities
WordPress WP-FB-AutoConnect plugin <= 4.6.4 - Cross Site Scripting (XSS) Vulnerability
CVE-2024-12279
WP-FB-AutoConnect <= 4.0.5 - XSS/CSRF
CVE-2023-37974
WP Social AutoConnect <= 4.6.1 - Cross-Site Request Forgery via jfb_admin_page
WP-FB-AutoConnect <= 4.0.5 - Cross-Site Request Forgery to Stored Cross-Site Scripting
WordPress WP-FB-AutoConnect Plugin <= 4.0.5 - Multiple Vulnerabilities