Vulnerabilities > Squirrly > SEO Plugin BY Squirrly SEO > 12.1.07

DATE CVE VULNERABILITY TITLE RISK
2024-02-05 CVE-2024-0597 Cross-site Scripting vulnerability in Squirrly SEO Plugin BY Squirrly SEO
The SEO Plugin by Squirrly SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to and including 12.3.15 due to insufficient input sanitization and output escaping.
network
low complexity
squirrly CWE-79
4.8
2023-05-08 CVE-2022-45065 Cross-site Scripting vulnerability in Squirrly SEO Plugin BY Squirrly SEO
Unauth.
network
low complexity
squirrly CWE-79
6.1
2022-11-28 CVE-2022-38140 Unrestricted Upload of File with Dangerous Type vulnerability in Squirrly SEO Plugin BY Squirrly SEO
Auth.
network
low complexity
squirrly CWE-434
8.8