Feedzy Rss Feeds
by WordPress
Source repositories
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-8976 | Med | 0.28 | 4.3 | 0.00 | Jun 6, 2026 | The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 5.1.7. This is due to the plugin not properly verifying that a user is authorized… | ||
| CVE-2025-11128 | Med | 0.26 | 5.0 | 0.00 | Oct 23, 2025 | The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 5.1.0 via the 'feedzy_sanitize_feeds' function. This makes it possible for… | ||
| CVE-2026-66437 | Med | 0.00 | 4.9 | 0.00 | Jul 27, 2026 | Contributor Server Side Request Forgery (SSRF) in Feedzy <= 5.2.4 versions. |
- risk 0.28cvss 4.3epss 0.00
The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 5.1.7. This is due to the plugin not properly verifying that a user is authorized…
- risk 0.26cvss 5.0epss 0.00
The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 5.1.0 via the 'feedzy_sanitize_feeds' function. This makes it possible for…
- risk 0.00cvss 4.9epss 0.00
Contributor Server Side Request Forgery (SSRF) in Feedzy <= 5.2.4 versions.