Input validation vulnerability in SmartSEO | SEO & Marketing Services WordPress Theme 4.0

The popular SEO plugin for WordPress has a security vulnerability that could allow hackers to access sensitive information from a website’s database. This vulnerability affects versions up to 4.0 of the plugin and is caused by not properly protecting user input and not adequately preparing the SQL query. This means that attackers with subscriber-level access or higher could add their own malicious code to existing queries, potentially stealing important data.

Detected in:

SmartSEO | SEO & Marketing Services WordPress Theme open vulnerable versions: >= * <= 4.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.