cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forbulk-image-title-attribute bulk-image-title-attribute

Direction: ascending
Jun 07, 2024

Bulk Auto Image Title Attribute (Image Title tag) optimizer (Image SEO) # 17717508442dc3479b3202d6c6e619ad3d5ff771

Date
Feb 28, 2022
Research Description
Bulk Auto Image Title Attribute (Image Title tag) optimizer (Image SEO) [bulk-image-title-attribute] < 1.2.3 WordPress Bulk Auto Image Title Attribute (Image Title tag) optimization (Image SEO) + Woocommerce plugin < 1.2.3 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability discovered in WordPress Bulk Auto Image Title Attribute (Image Title tag) optimization (Image SEO) + Woocommerce plugin (versions < 1.2.3).
Affected versions
max 1.2.3.
Status
vulnerable
Nov 15, 2024

Bulk Auto Image Title Attribute (Image Title tag) optimizer (Image SEO) # CVE-2022-4974

CVE, Research URL

CVE-2022-4974

Date
Oct 16, 2024
Research Description
The Freemius SDK, as used by hundreds of WordPress plugin and theme developers, was vulnerable to Cross-Site Request Forgery and Information disclosure due to missing capability checks and nonce protection on the _get_debug_log, _get_db_option, and the _set_db_option functions in versions up to, and including 2.4.2. Any WordPress plugin or theme running a version of Freemius less than 2.4.3 is vulnerable.
Affected versions
max 1.2.3.
Status
vulnerable
Nov 11, 2025

Bulk Auto Image Title Attribute (Image Title tag) optimizer (Image SEO) # CVE-2025-62921

CVE, Research URL

CVE-2025-62921

Date
Oct 27, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pagup Bulk Auto Image Title Attribute bulk-image-title-attribute allows DOM-Based XSS.This issue affects Bulk Auto Image Title Attribute: from n/a through <= 2.0.1.
Affected versions
max 2.0.1.
Status
vulnerable