Vulnerability index

Browse CVEs

11 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Seopress HIGH 8.8
CVE-2024-50455

Missing Authorization vulnerability in Benjamin Denis SEOPress wp-seopress allows Exploiting Incorrectly Configured Access Control Security Levels.Th…

Fix: 8.2+
Fix from $1,950 2024-10-29
Seopress HIGH 8.8
CVE-2024-50456

Missing Authorization vulnerability in Benjamin Denis SEOPress wp-seopress allows Exploiting Incorrectly Configured Access Control Security Levels.Th…

Fix: after 8.2
Fix from $1,950 2024-10-29
Seopress MEDIUM 6.1
CVE-2024-9225

The SEOPress – On-site SEO plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg wi…

Fix: 8.2+
Fix from $1,600 2024-10-02
Seopress CRITICAL 9.8
CVE-2024-5488

The SEOPress WordPress plugin before 7.9 does not properly protect some of its REST API routes, which combined with another Object Injection vulnera…

Fix: 7.9+
Fix from $2,300 2024-07-09
Seopress MEDIUM 6.1
CVE-2024-4900

The SEOPress WordPress plugin before 7.8 does not validate and escape one of its Post settings, which could allow contributor and above role to perf…

Fix: 7.8+
Fix from $1,600 2024-06-24
Seopress MEDIUM 5.0
CVE-2024-4899

The SEOPress WordPress plugin before 7.8 does not sanitise and escape some of its Post settings, which could allow high privilege users such as cont…

Fix: 7.8+
Fix from $1,600 2024-06-24
Seopress MEDIUM 5.4
CVE-2024-1168

The SEOPress – On-site SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's social image URL in all versions up to,…

Fix: after 7.9
Fix from $1,600 2024-06-20
Seopress MEDIUM 5.4
CVE-2024-1134

The SEOPress – On-site SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the SEO title and description parameters as well as …

Fix: 7.6+
Fix from $1,600 2024-05-24
Seopress MEDIUM 5.4
CVE-2024-2165

The SEOPress – On-site SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the image alt parameter in all versions up to, and i…

Fix: 7.6+
Fix from $1,600 2024-04-09
Seopress HIGH 7.2
CVE-2023-1669EPSS 18%

The SEOPress WordPress plugin before 6.5.0.3 unserializes user input provided via the settings, which could allow high-privilege users such as admin …

Fix: 6.5.0.3+
Fix from $1,950 2023-05-02
Seopress MEDIUM 5.4
CVE-2021-34641

The SEOPress WordPress plugin is vulnerable to Stored Cross-Site-Scripting via the processPut function found in the ~/src/Actions/Api/TitleDescriptio…

Fix: 5.0.4+
Fix from $1,600 2021-08-16