Loading HuntDB...

GHSA-gfj2-m63m-4q89

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to unauthorized data modification due to a missing capability check on the feedzy dashboard in all versions up to, and including, 4.4.1. This makes it possible for authenticated attackers, with contributor access or higher, to create, edit or delete feed categories created by them.

Related CVEs

Key Information

GHSA ID
GHSA-gfj2-m63m-4q89
Published
February 6, 2024 12:30 AM
Last Modified
February 13, 2024 9:30 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: November 26, 2025 6:30 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.