Smart Seo Tool
by WordPress
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-24976 | Med | 0.33 | 6.1 | 0.01 | Jan 24, 2022 | The Smart SEO Tool WordPress plugin before 3.0.6 does not sanitise and escape the search parameter before outputting it back in an attribute when the TDK optimisation setting is enabled, leading to a Reflected Cross-Site Scripting | ||
| CVE-2026-65533 | Med | 0.00 | 6.5 | 0.00 | Jul 23, 2026 | Contributor Cross Site Scripting (XSS) in Smart SEO Tool <= 4.1.2 versions. |
- risk 0.33cvss 6.1epss 0.01
The Smart SEO Tool WordPress plugin before 3.0.6 does not sanitise and escape the search parameter before outputting it back in an attribute when the TDK optimisation setting is enabled, leading to a Reflected Cross-Site Scripting
- risk 0.00cvss 6.5epss 0.00
Contributor Cross Site Scripting (XSS) in Smart SEO Tool <= 4.1.2 versions.