VYPR

Dx Auto Publish

by WordPress

Source repositories

CVEs (2)

  • CVE-2025-26577HigFeb 13, 2025
    risk 0.46cvss 7.1epss 0.00

    Cross-Site Request Forgery (CSRF) vulnerability in daxiawp DX-auto-publish dx-auto-publish allows Stored XSS.This issue affects DX-auto-publish: from n/a through <= 1.2.

  • CVE-2025-12064MedNov 8, 2025
    risk 0.40cvss 6.1epss 0.00

    The WP2Social Auto Publish plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via PostMessage in all versions up to, and including, 2.4.7 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject…