VYPR

WP Meteor Website Speed Optimization Addon

by WordPress

CVEs (3)

  • CVE-2024-6553MedJul 24, 2024
    risk 0.34cvss 5.3epss 0.00

    The WP Meteor Website Speed Optimization Addon plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 3.4.3.This is due to the plugin utilizing wpdesk and leaving test files with display_errors on. This makes it possible for…

  • CVE-2026-2902MedApr 29, 2026
    risk 0.33cvss 6.1epss 0.00

    The WP Meteor Website Speed Optimization Addon plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'frontend_rewrite' function's 'WPMETEOR[N]WPMETEOR' placeholder content in all versions up to, and including, 3.4.16 due to insufficient input sanitization…

  • CVE-2023-26543MedNov 13, 2023
    risk 0.28cvss 4.3epss 0.00

    Cross-Site Request Forgery (CSRF) vulnerability in Aleksandr Guidrevitch WP Meteor Website Speed Optimization Addon plugin <= 3.1.4 versions.