Vulnerabilities > Rankmath > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-09-09 CVE-2022-36376 Unspecified vulnerability in Rankmath SEO
Server-Side Request Forgery (SSRF) vulnerability in Rank Math SEO plugin <= 1.0.95 at WordPress.
network
low complexity
rankmath
critical
9.8
2020-04-07 CVE-2020-11514 Missing Authorization vulnerability in Rankmath SEO
The Rank Math plugin through 1.0.40.2 for WordPress allows unauthenticated remote attackers to update arbitrary WordPress metadata, including the ability to escalate or revoke administrative privileges for existing users via the unsecured rankmath/v1/updateMeta REST API endpoint.
network
low complexity
rankmath CWE-862
critical
9.8