Peadig's Twitter Feed: Embedded Timeline WordPress Plugin
Peadig's Twitter Feed: Embedded Timeline WordPress Plugin has one disclosed vulnerability in the WordSec catalog, all reported in 2010; it remains unpatched as of September 2026. Their average CVSS score is 7.1, and the most serious one scores 7.1 out of 10. Severity breakdown: 0 critical and 1 high.
The most common weakness is Cross-Site Scripting, behind 1 of the records (100%).
The one issue recorded for Peadig's Twitter Feed: Embedded Timeline WordPress Plugin has no published fix yet, which makes virtual patching the only reliable mitigation. The oldest unresolved one dates back to 2010.
All of these findings were reported by John Leitch. Peadig's Twitter Feed: Embedded Timeline WordPress Plugin is installed on roughly 500 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 3.7.41.
CVE-2010-4825Peadig's Twitter Feed: Embedded Timeline WordPress Plugin <= 2.2 - Reflected Cross-Site Scripting
Read the full analysisVulnerability Records
Peadig's Twitter Feed: Embedded Timeline WordPress Plugin
Author
Alex Moss
The WordPress Twitter Feed Plugin lets you simply output any user’s tweets into your WordPress page, template or sidebar! You can customise the username, number of tweets, and style of ouput. Twitter Embedded Timeline WordPress Plugin homepage. Twitter Feed PRO – this plugin outputs tweet using flat HTML and supports Twitter’s API v1.1. More WordPress Plugins.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C