Known Vulnerabilities for products from Seopress
Listed below are 8 of the newest known vulnerabilities associated with the vendor "Seopress".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2025-48298 json | Not Provided | 2025-08-20 | 2026-04-01 | |
| CVE-2024-50456 json | Missing Authorization vulnerability in Benjamin Denis SEOPress wp-seopress allows Exploiting Incorrectly Configured Access Co... | Not Provided | 2024-10-29 | 2026-04-01 |
| CVE-2024-50455 json | Missing Authorization vulnerability in Benjamin Denis SEOPress wp-seopress allows Exploiting Incorrectly Configured Access Co... | Not Provided | 2024-10-29 | 2026-04-01 |
| CVE-2024-50454 json | Not Provided | 2024-10-29 | 2026-04-01 | |
| CVE-2024-2165 json | The SEOPress – On-site SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the image alt parameter in... | Not Provided | 2024-04-09 | 2026-04-08 |
| CVE-2024-1168 json | The SEOPress – On-site SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's social image ... | Not Provided | 2024-06-20 | 2026-04-08 |
| CVE-2024-1134 json | The SEOPress – On-site SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the SEO title and descript... | Not Provided | 2024-05-24 | 2026-04-08 |
| CVE-2023-6290 json | 4.8 - MEDIUM | 2024-01-22 | 2024-01-26 | |
| CVE-2023-1669 json | The SEOPress WordPress plugin before 6.5.0.3 unserializes user input provided via the settings, which could allow high-privil... | 7.2 - HIGH | 2023-05-02 | 2023-11-07 |
| CVE-2021-34641 json | The SEOPress WordPress plugin is vulnerable to Stored Cross-Site-Scripting via the processPut function found in the ~/src/Act... | 5.4 - MEDIUM | 2021-08-16 | 2021-08-23 |