The Social Media Share Buttons & Social Sharing Icons plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.8.5 via the sfsi_save_export function. This can allow subscribers to export plugin settings that include social media authentication tokens and secrets as well as app passwords.
History

Wed, 05 Feb 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Wordfence

Published:

Updated: 2025-02-05T19:03:05.786Z

Reserved: 2023-09-19T18:04:36.844Z

Link: CVE-2023-5070

cve-icon Vulnrichment

Updated: 2024-08-02T07:44:53.855Z

cve-icon NVD

Status : Modified

Published: 2023-10-20T08:15:12.993

Modified: 2024-11-21T08:41:00.343

Link: CVE-2023-5070

cve-icon Redhat

No data.