CVE-2026-53736
MEDIUM
NVD
CVSS Score
4.3
Severity
MEDIUM
Published
Jun 10, 2026
Vendor
unknown
Description
Easy Twitter Feeds before 1.2.13 contains a cross-site request forgery vulnerability in the duplicate_post action handler that lacks nonce verification. Attackers can trick an authenticated user into visiting a crafted link that duplicates any post regardless of post type.