cleantalk
Vulnerabilities and Security Researches

Rank Math SEO with AI SEO Tools, CVE-2020-11514

CVE, Research URL

CVE-2020-11514

Published on
Apr 07, 2020
Research Description
The Rank Math plugin through 1.0.40.2 for WordPress allows unauthenticated remote attackers to update arbitrary WordPress metadata, including the ability to escalate or revoke administrative privileges for existing users via the unsecured rankmath/v1/updateMeta REST API endpoint.
Affected versions
Min -, max 1.0.0.41.
Status
vulnerable