📦 Seopress

by Seopress

🔍 What is Seopress?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-5488

CRITICAL CVSS 9.8 Jul 9, 2024

CVE-2024-5488 is a critical vulnerability in the SEOPress WordPress plugin that allows unauthenticated attackers to exploit insecure REST API endpoints combined with an object injection flaw. This can...

CVE-2023-1669

HIGH CVSS 7.2 May 2, 2023

The SEOPress WordPress plugin before version 6.5.0.3 contains a PHP Object Injection vulnerability due to unsafe deserialization of user-controlled input in settings. This allows authenticated adminis...

CVE-2024-50456

MEDIUM CVSS 5.4 Oct 29, 2024

This CVE describes a Missing Authorization vulnerability in the SEOPress WordPress plugin that allows attackers to exploit incorrectly configured access control security levels. It affects all SEOPres...

CVE-2024-9225

MEDIUM CVSS 6.1 Oct 2, 2024

The SEOPress WordPress plugin is vulnerable to reflected cross-site scripting (XSS) in all versions up to 8.1.1. Unauthenticated attackers can inject malicious scripts via crafted URLs, which execute ...

CVE-2024-4899

MEDIUM CVSS 5.0 Jun 24, 2024

This vulnerability in the SEOPress WordPress plugin allows high-privilege users (like contributors) to inject malicious scripts into post settings. When other users view affected posts, the scripts ex...