Known Vulnerabilities for Yoast Seo by Yoast
Listed below are 9 of the newest known vulnerabilities associated with "Yoast Seo" by "Yoast".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-24591 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in yasir129 Turn Yoast SEO... | Not Provided | 2026-01-23 | 2026-04-28 |
| CVE-2026-3427 json | The Yoast SEO – Advanced SEO with real-time guidance and built-in AI plugin for WordPress is vulnerable to Stored Cross-Sit... | Not Provided | 2026-03-22 | 2026-04-08 |
| CVE-2026-1217 json | The Yoast Duplicate Post plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability ... | Not Provided | 2026-03-18 | 2026-04-08 |
| CVE-2025-14481 json | The Yoast SEO plugin for WordPress is vulnerable to Insecure Direct Object References in all versions up to, and including, 2... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2024-33641 json | Deserialization of Untrusted Data vulnerability in Team Yoast Custom field finder.This issue affects Custom field finder: fro... | Not Provided | 2024-04-29 | 2026-04-28 |
| CVE-2024-4984 json | The Yoast SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘display_name’ author meta in all... | Not Provided | 2024-05-16 | 2026-04-08 |
| CVE-2024-4041 json | The Yoast SEO plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via URLs in all versions up to, and includ... | Not Provided | 2024-05-14 | 2026-04-08 |
| CVE-2023-40680 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Team Yoast Yoast SEO al... | Not Provided | 2023-11-30 | 2026-04-28 |
| CVE-2023-32300 json | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Yoast Yoast SEO: Local plugin <= 14.8 versions. | 6.1 - MEDIUM | 2023-08-23 | 2023-08-29 |
| CVE-2023-28785 json | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Yoast Yoast SEO: Local plugin <= 14.9 versions. | 5.4 - MEDIUM | 2023-05-28 | 2023-06-01 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Yoast | Yoast Seo | 9.8 | |||
| Application | Yoast | Yoast Seo | 9.7 | |||
| Application | Yoast | Yoast Seo | 9.7 | |||
| Application | Yoast | Yoast Seo | 9.7 | |||
| Application | Yoast | Yoast Seo | 9.7 | |||
| Application | Yoast | Yoast Seo | 9.7 | |||
| Application | Yoast | Yoast Seo | 9.7 | |||
| Application | Yoast | Yoast Seo | 9.6 | |||
| Application | Yoast | Yoast Seo | 9.6 | |||
| Application | Yoast | Yoast Seo | 9.6 | |||
| Application | Yoast | Yoast Seo | 9.6 | |||
| Application | Yoast | Yoast Seo | 9.6 | |||
| Application | Yoast | Yoast Seo | 9.6 | |||
| Application | Yoast | Yoast Seo | 9.5 | |||
| Application | Yoast | Yoast Seo | 9.5 | |||
| Application | Yoast | Yoast Seo | 9.5 | |||
| Application | Yoast | Yoast Seo | 9.5 | |||
| Application | Yoast | Yoast Seo | 9.5 | |||
| Application | Yoast | Yoast Seo | 9.5 | |||
| Application | Yoast | Yoast Seo | 9.4 |