Pluginmirror develops a narrow range of WordPress plugins including Social Stickers and WP Quick Frontend Editor that handle user input and administrative functionality, with observed vulnerabilities clustering around web-application input handling and access control such as cross-site request forgery, cross-site scripting, and missing authorization checks. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pluginmirror over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-1418MEDIUM The Social Stickers WordPress plugin through 2.2.9 does not have CSRF checks in place when updating its Social Network settings, and does not escape some of these fields, which cou | May 16, 2022 | 6.1 | 22 | NO | NO |
CVE-2021-4371MEDIUM The WP Quick FrontEnd Editor plugin for WordPress is vulnerable to Setting Changs in versions up to, and including, 5.5. This is due to lacking both a security nonce and a capabili | Jun 7, 2023 | 4.3 | 16 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pluginmirror.
Media articles that mention a CVE ID that affects a product developed by Pluginmirror — matched by CVE ID, not by vendor name.