Arvow AI SEO Writer
by WordPress
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-16257 | Hig | 0.53 | 8.2 | 0.00 | Aug 10, 2026 | The Arvow AI SEO Writer WordPress plugin before 1.5.4 does not properly restrict access to one of its REST endpoints, whose only access control can be bypassed by unauthenticated users through type juggling when the Arvow AI SEO Writer WordPress plugin before 1.5.4 has not been… | ||
| CVE-2026-66469 | Hig | 0.49 | 7.5 | 0.00 | Aug 13, 2026 | Unauthenticated Broken Access Control in Arvow AI SEO Writer <= 1.5.3 versions. |
- risk 0.53cvss 8.2epss 0.00
The Arvow AI SEO Writer WordPress plugin before 1.5.4 does not properly restrict access to one of its REST endpoints, whose only access control can be bypassed by unauthenticated users through type juggling when the Arvow AI SEO Writer WordPress plugin before 1.5.4 has not been…
- risk 0.49cvss 7.5epss 0.00
Unauthenticated Broken Access Control in Arvow AI SEO Writer <= 1.5.3 versions.