VYPR

Social Share Buttons

by WordPress

CVEs (3)

  • CVE-2023-54333HigJan 13, 2026
    risk 0.53cvss 8.2epss 0.00

    Social-Share-Buttons 2.2.3 contains a critical SQL injection vulnerability in the project_id parameter that allows attackers to manipulate database queries. Attackers can exploit this vulnerability by sending crafted POST requests with malicious SQL payloads to retrieve and…

  • CVE-2024-13117MedJan 27, 2025
    risk 0.42cvss 6.5epss 0.00

    The Social Share Buttons for WordPress plugin through 2.7 allows an unauthenticated user to upload arbitrary images and change the path where they are uploaded

  • CVE-2018-11632MedMay 31, 2018
    risk 0.42cvss 6.5epss 0.01

    An issue was discovered in the MULTIDOTS Add Social Share Messenger Buttons Whatsapp and Viber plugin 1.0.8 for WordPress. If an admin user can be tricked into visiting a crafted URL created by an attacker (via spear phishing/social engineering), the attacker can change the…