WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in BestWebSoft's Like & Share – Posts, Pages and Widget Social Extension plugin for WordPress

Add Facebook Follow, Like, and Share buttons to WordPress posts, pages, and widgets.

2Reported vulnerabilities
7.5Highest CVSS score
2.77Latest version
4,000+Active installs

What to do now

Update BestWebSoft's Like & Share – Posts, Pages and Widget Social Extension plugin for WordPress to 2.74 or later. 2 of these have a fixed version available. Updating resolves them.

Plugin last updated: June 12, 2025 / Tested up to WordPress: 6.8.8 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2023-6250 High 7.5 0.5% Before 2.74 2.74 December 26, 2023
WF-305f9e72-3a3f-4b22-8097-f37b1a1ebe1d Medium 6.1 Before 2.5.4 2.5.4 April 12, 2017

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.