What Would Seth Godin Do
What Would Seth Godin Do has one disclosed vulnerability in the WordSec catalog, all reported in 2024; it is fixed as of September 2026. Their average CVSS score is 4.4, and the most serious one scores 4.4 out of 10.
The most common weakness is Cross-Site Scripting, behind 1 of the records (100%).
The one issue recorded for What Would Seth Godin Do has a vendor fix available, so running the current release closes it.
All of these findings were reported by FX. What Would Seth Godin Do is installed on roughly 900 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.4.
CVE-2024-51900What Would Seth Godin Do <= 2.1.1 - Authenticated (Administrator+) Stored Cross-Site Scripting
Read the full analysisVulnerability Records

What Would Seth Godin Do
Author
James Hunt
What Would Seth Godin Do lets you greet first-time visitors with a tailored welcome message — like an invitation to subscribe to your RSS feed — and show a different (or no) message to people who have already been to your site before. The plugin stores a small cookie that counts how many times a visitor has been to your site. While the count is at or below the “# of Repetitions” threshold you configure, the new visitor message is shown. Once the visitor exceeds that threshold, the return visitor message appears instead. Inspired by Seth Godin’s 2006 blog post: …in the middle, Starting. Features: Separate, fully customisable messages for new and returning visitors. Configurable repetition threshold — choose how many visits count as “new”. Choose whether messages appear before or after post content, or only where you place the <?php wwsgd_the_message(); ?> template tag. Option to show or hide messages on Pages (vs. Posts only). Exclude specific post or page IDs from showing any message. No external dependencies; lightweight vanilla JavaScript. Support & Feature Requests I am actively working on What Would Seth Godin Do. If you have a support issue or have feedback or feature requests, I would love to hear it in the Support Forum.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C