cleantalk
Vulnerabilities and Security Researches

SEO Plugin by Squirrly SEO, CVE-2024-10515

CVE, Research URL

CVE-2024-10515

Published on
Nov 20, 2024
Research Description
In the process of testing the SEO Plugin by Squirrly SEO WordPress plugin before 12.3.21, a vulnerability was found that allows you to implement Stored XSS on behalf of the editor by embedding malicious script, which entails account takeover backdoor
Affected versions
max 12.3.21.
Status
vulnerable