Victorfreitas develops a WordPress plugin focused on social sharing functionality, represented by its WPUpper Share Buttons product. The observed vulnerability pattern centers on cross-site request forgery (CSRF) weaknesses, a characteristic class in web-facing plugins that lack sufficient request validation. Current CVE counts, severity breakdown, and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Victorfreitas over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-13883MEDIUM The WPUpper Share Buttons plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.51. This is due to missing or incorrect nonce val | Feb 21, 2025 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Victorfreitas.
Media articles that mention a CVE ID that affects a product developed by Victorfreitas — matched by CVE ID, not by vendor name.