0.003 Low
EPSS
Percentile
68.3%
Because of a cross-site scripting vulnerability in Nextend Facebook Connect plugin, anyone can change plugin settings.
Update the plugin to version 1.5.1.
www.exploit-db.com/exploits/35439/