WordPress twimp-wp Cross Site Request Forgery / Cross Site Scripting

WordPress twimp-wp plugin suffers from cross site request forgery and cross site scripting vulnerabilities.