Easy Social Box Project develops a focused social media integration plugin with a narrow product portfolio centered on the Easy Social Box component. The vendor's disclosed vulnerabilities cluster around cross-site scripting weaknesses in web page generation, a pattern typical of client-facing plugins handling user-supplied content and third-party data integration. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Easy Social Box Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-4754MEDIUM The Easy Social Box / Page Plugin WordPress plugin through 4.1.2 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the | Feb 21, 2023 | 5.4 | 20 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Easy Social Box Project.
Media articles that mention a CVE ID that affects a product developed by Easy Social Box Project — matched by CVE ID, not by vendor name.