The PostX plugin for WordPress, up to version 5.0.5, is vulnerable to unauthorized modification of the 'share_count' post meta due to a missing capability check in the 'ultp_shareCount_callback()' function. This allows unauthenticated users to alter this data for any post, potentially leading to misleading statistics or exploitation of additional system weaknesses.
We use cookies to enhance your browsing experience, serve personalized ads or content, and analyze our traffic. By clicking "Accept All", you consent to our use of cookies.