VYPR

EONSR AEO Agent

by WordPress

CVEs (1)

  • CVE-2026-11588Aug 6, 2026
    risk 0.00cvss epss 0.00

    The EONSR AEO Agent WordPress plugin through 3.7.9 does not perform any authorisation check on one of its REST API routes and disables HTML sanitisation before saving the post, allowing unauthenticated attackers to create administrator-attributed published posts containing…