VYPR

Ot Twitter Feed

by WordPress

Source repositories

CVEs (1)

  • CVE-2025-11860MedNov 11, 2025
    risk 0.42cvss 6.4epss 0.00

    The Twitter Feed plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'ottwitter_feed' shortcode in all versions up to, and including, 1.3.1. This is due to the plugin not properly sanitizing user input and output of the 'width' and 'height' parameters. This…