Plugin Vulnerability Hub
Plugin 1 known issue Latest disclosed May 07, 2024

Shared Counts – Social Media Share Buttons Vulnerabilities

Review known vulnerability records for the WordPress plugin Shared Counts – Social Media Share Buttons (`shared-counts`), including severity, CVE references, affected versions, and patch status.

Known Records
1
High or Critical
0
Linked CVEs
0
Last Updated
May 07, 2024
Coverage Snapshot

What this page helps you verify fast

This hub clusters every indexed record for Shared Counts – Social Media Share Buttons so operators can quickly confirm whether a disclosed issue maps to the installed slug and version range.

Patch Visibility
1 record include a published patch path.
Severity Mix
0 critical and 0 high severity findings.
Reference Workflow
Jump from the hub into the full report when you need remediation notes, CVSS vector details, or source references.
Known Vulnerabilities

Reports for Shared Counts – Social Media Share Buttons

Sorted by latest disclosure date so newly published issues surface first.

Plugin Medium Patched: Yes
Shared Counts – Social Media Share Buttons <= 1.4.1 - Missing Authorization to Arbitrary Email Sending

The Shared Counts – Social Media Share Buttons plugin for WordPress is vulnerable to unauthorized access to functionality due to a missing capability check on the email_ajax function. This makes it possible for unauthenticated attackers to send arbitrary emails.

Published
May 07, 2024
Patched Release
1.5.0
Affected Versions
Versions up to 1.4.1
Next Step
Update to 1.5.0 or newer if supported.