Posts Like Dislike
Posts Like Dislike has one disclosed vulnerability in the WordSec catalog, all reported in 2023; it is fixed as of September 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.
The most common weakness is Missing Authorization, behind 1 of the records (100%).
The one issue recorded for Posts Like Dislike has a vendor fix available, so running the current release closes it.
All of these findings were reported by Elliot. Posts Like Dislike is installed on roughly 6,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.4.
CVE-2023-41849Posts Like Dislike <= 1.1.1 - Missing Authorization to Authenticated (Subscriber+) Plugin Setting Reset
Read the full analysisVulnerability Records

Posts Like Dislike
Author
Happy Coders
Posts Like Dislike is the Free WordPress Plugin to enable Like and Dislike Icons for default WordPress Posts or any other post types. Choose Thumbs Up or Thumbs Down, Smiley or Frown, Right or Wrong icons or your own custom like dislike icons, choice is yours. Posts Like Dislike increases the interaction with the WordPress posts/post types by enabling likes and dislikes buttons along with the count. Posts Like Dislike Features Status Enable or Disable Posts Like Dislike for posts/page or any other post types Like Dislike Position After Post Before Post Like Dislike Display Display Both Like and Dislike Display Like Only Display Dislike Only Like Dislike Restriction Cookie Restriction IP Restriction No Restriction Like Dislike Order Like Dislike Dislike Like 4 Pre Available Icon Templates Thumbs Up Thumbs Down Heart or Heart Beat Right or Wrong Smiley or Frown Custom Like Dislike Icon Upload feature Icon Color Configuration Count Color Configuration Shortcode [posts_like_dislike id=post_id] Please replace post_id with the id of the post or remove id parameter for considering the post id as the id of global $post object Custom Function <?php echo do_shortcode('[posts_like_dislike id=post_id]');?> Please replace post_id with the id of the post or remove id parameter for considering the post id as the id of global $post object If you are using in your single.php template file then you can use below code
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C