Medium severity5.4NVD Advisory· Published Nov 8, 2022· Updated Jun 17, 2026
CVE-2022-40223
CVE-2022-40223
Description
Nonce token leakage and missing authorization in SearchWP premium plugin <= 4.2.5 on WordPress leading to plugin settings change.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- SearchWP, LLC/SearchWPv5Range: <= 4.2.5
Patches
Vulnerability mechanics
References
2- patchstack.com/database/vulnerability/searchwp/wordpress-searchwp-premium-plugin-4-2-5-broken-authentication-vulnerabilitynvdThird Party Advisory
- searchwp.com/documentation/changelog/nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.