Known Vulnerabilities for Sumo by SumoMe
Listed below are 5 of the newest known vulnerabilities associated with "Sumo" by "SumoMe".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-24989 json | Deserialization of Untrusted Data vulnerability in FantasticPlugins SUMO Affiliates Pro affs allows Object Injection.This iss... | Not Provided | 2026-03-25 | 2026-04-24 |
| CVE-2026-7534 json | The SUMO Reward Points plugin for WordPress is vulnerable to Unauthenticated Stored Cross-Site Scripting via the REST API end... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2025-62005 json | Cross-Site Request Forgery (CSRF) vulnerability in FantasticPlugins SUMO Memberships for WooCommerce sumomemberships allows C... | Not Provided | 2025-10-22 | 2026-04-27 |
| CVE-2025-52757 json | Missing Authorization vulnerability in FantasticPlugins SUMO Memberships for WooCommerce sumomemberships allows Exploiting In... | Not Provided | 2025-10-22 | 2026-04-27 |
| CVE-2024-31265 json | Cross-Site Request Forgery (CSRF) vulnerability in SumoMe Sumo.This issue affects Sumo: from n/a through 1.34. | Not Provided | 2024-04-12 | 2026-04-28 |