CVE-2025-58846

All FrameworksWordPressCWE-352CVE-2025-58846

CVE-2025-58846

State: PUBLISHED · Published: 2025-09-05 · Updated: 2026-04-01 · Assigner: Patchstack
Description
Cross-Site Request Forgery (CSRF) vulnerability in Dejan Markovic WordPress Buffer – HYPESocial. Social Media Auto Post, Social Media Auto Publish and Schedule buffer-my-post allows Reflected XSS.This issue affects WordPress Buffer – HYPESocial. Social Media Auto Post, Social Media Auto Publish and Schedule: from n/a through <= 2020.1.0.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2025/58xxx/CVE-2025-58846.json