Vulnerabilities (CVE)

Filtered by vendor Joomunited Subscribe
Filtered by product Wp Meta Seo
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-30337 1 Joomunited 1 Wp Meta Seo 2022-07-25 N/A 4.3 MEDIUM
Cross-Site Request Forgery (CSRF) vulnerability in JoomUnited WP Meta SEO plugin <= 4.4.8 at WordPress allows an attacker to update the social settings.
CVE-2022-1093 1 Joomunited 1 Wp Meta Seo 2022-05-28 3.5 LOW 4.8 MEDIUM
The WP Meta SEO WordPress plugin before 4.4.7 does not sanitise or escape the breadcrumb separator before outputting it to the page, allowing a high privilege user such as an administrator to inject arbitrary javascript into the page even when unfiltered html is disallowed.