Cross-Site Request Forgery (CSRF) vulnerability in Smash Balloon Custom Twitter Feeds (Tweets Widget) allows Cross Site Request Forgery.This issue affects Custom Twitter Feeds (Tweets Widget): from n/a through 2.2.3.
Metrics
Affected Vendors & Products
References
History
Wed, 05 Feb 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Smashballoon
Smashballoon custom Twitter Feeds |
|
CPEs | cpe:2.3:a:smashballoon:custom_twitter_feeds:*:*:*:*:*:wordpress:*:* | |
Vendors & Products |
Smashballoon
Smashballoon custom Twitter Feeds |
Thu, 31 Oct 2024 13:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 31 Oct 2024 10:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Cross-Site Request Forgery (CSRF) vulnerability in Smash Balloon Custom Twitter Feeds (Tweets Widget) allows Cross Site Request Forgery.This issue affects Custom Twitter Feeds (Tweets Widget): from n/a through 2.2.3. | |
Title | WordPress Custom Twitter Feeds plugin <= 2.2.3 - Cross Site Request Forgery (CSRF) vulnerability | |
Weaknesses | CWE-352 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2024-10-31T13:00:40.058Z
Reserved: 2024-10-17T09:52:18.155Z
Link: CVE-2024-49685

Updated: 2024-10-31T13:00:26.834Z

Status : Analyzed
Published: 2024-10-31T10:15:05.710
Modified: 2025-02-05T14:51:00.297
Link: CVE-2024-49685

No data.