Input validation vulnerability in SEO Plugin by Squirrly SEO 12.3.20

The SEO Plugin for WordPress created by Squirrly SEO can be hacked by attackers through the admin settings. This can happen in all versions, including the latest one, 12.3.20. The issue is caused by not properly cleaning up the input and output, which means that hackers with editor-level access or higher can insert harmful code into pages. This only affects websites with multiple sites and those that have disabled the unfiltered_html feature.

Detected in:

SEO Plugin by Squirrly SEO fixed vulnerable versions: >= * <= 12.3.20

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.