VYPR

Really Simple SSL

by WordPress

Source repositories

CVEs (8)

  • CVE-2026-48970HigJun 15, 2026
    risk 0.53cvss 8.1epss 0.00

    Unauthenticated Broken Authentication in Really Simple SSL <= 9.5.10 versions.

  • CVE-2026-48969MedJun 15, 2026
    risk 0.42cvss 6.5epss 0.00

    Subscriber Broken Access Control in Really Simple SSL <= 9.5.9 versions.

  • CVE-2026-84777HigSep 3, 2026
    risk 0.41cvss 7.4epss 0.00

    Unauthenticated Broken Authentication in Really Simple SSL <= 9.8.0 versions.

  • CVE-2024-31229MedApr 18, 2024
    risk 0.36cvss 5.5epss 0.00

    Server-Side Request Forgery (SSRF) vulnerability in Really Simple Plugins Really Simple SSL.This issue affects Really Simple SSL: from n/a through 7.2.3.

  • CVE-2026-82519MedSep 14, 2026
    risk 0.28cvss 4.3epss 0.00

    Really Simple Security plugin for WordPress before 9.8.2 contains a missing authorization check vulnerability that allows authenticated low-privileged attackers to bypass enforced two-factor authentication indefinitely by exploiting an unguarded code path in the profile-page…

  • CVE-2026-32461MedMar 13, 2026
    risk 0.28cvss 4.3epss 0.00

    Missing Authorization vulnerability in Really Simple Plugins Really Simple SSL really-simple-ssl allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Really Simple SSL: from n/a through <= 9.5.7.

  • CVE-2025-24623MedJan 24, 2025
    risk 0.28cvss 4.3epss 0.00

    Cross-Site Request Forgery (CSRF) vulnerability in Really Simple Plugins Really Simple SSL really-simple-ssl allows Cross Site Request Forgery.This issue affects Really Simple SSL: from n/a through <= 9.1.4.

  • CVE-2026-84775MedSep 2, 2026
    risk 0.27cvss 5.3epss 0.00

    Unauthenticated Denial of Service Attack in Really Simple SSL <= 9.8.0 versions.