Update the WordPress Blog2Social plugin to the latest available version (at least 6.9.10).
Sakri Rafael Koskimies discovered and reported this SQL Injection vulnerability in WordPress Blog2Social Plugin. This could allow a malicious actor to directly interact with your database, including but not limited to stealing information and creating new administrator accounts. This vulnerability has been fixed in version 6.9.10.
Missing Authorization to Auth. Settings Update vulnerability
Authenticated ServerSide Request Forgery (SSRF) vulnerability
Reflected CrossSite Scripting (XSS) vulnerability
Authenticated SQL Injection (SQLi) vulnerability
CrossSite Scripting (XSS) vulnerability