N/A
2026-02-16< 5.0.11
RSS Aggregator <= 5.0.10 - Reflected Cross-Site Scripting via 'template' Parameter
Minimum safe version
5.0.12
Update to 5.0.12 or later to address 13 fixable vulnerabilities
RSS Aggregator <= 5.0.10 - Reflected Cross-Site Scripting via 'template' Parameter
RSS Aggregator – RSS Import, News Feeds, Feed to Post, and Autoblogging <= 5.0.11 - Unauthenticated DOM-Based Reflected Cross-Site Scripting via postMessage
CVE-2025-14745
CVE-2025-14375
CVE-2024-9583
CVE-2024-6621
CVE-2024-4860
CVE-2024-0628
CVE-2024-0630
WP RSS Aggregator – News Feeds, Autoblogging, Youtube Video Feeds and More <= 4.6.3 - Authorization Bypass
CVE-2021-24768
CVE-2021-24988
CVE-2022-0189