Taeggie Feed
Taeggie Feed has 2 disclosed vulnerabilities in the WordSec catalog, reported between 2024 and 2025; all 2 are fixed as of September 2026. Their average CVSS score is 6.4, and the most serious one scores 6.4 out of 10.
The most common weakness is Cross-Site Scripting, behind 2 of the records (100%).
Every one of the 2 issues recorded for Taeggie Feed has a vendor fix available, so running the current release closes all known holes.
2 independent researchers contributed these findings, one record each. Taeggie Feed is installed on roughly 70 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.8.8.
CVE-2025-6382Taeggie Feed <= 0.1.10 - Authenticated (Contributor+) Stored Cross-Site Scripting via name Attribute
Read the full analysisVulnerability Records

Taeggie Feed
Author
Taeggie
Taeggie Feed displays a feed of social media content that can be modified and configured on the fly on taeggie.com. Major features of Taeggie Feed include: Simple Facebook, Instagram, Twitter and LinkedIn integrations – just link your relevant social media accounts and go! Retrieve content by hashtag or account (hashtag not available on Facebook). Premoderate or postmoderate content as required. Unlimited sources per feed. Powerful content filtering. Analytics and weekly email reports on social media activity. Software-as-a-service, so you will rarely need to touch your plugin code.ny PS: You’ll need a Taeggie account to use it (except for demo/testing purposes).
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C