Input validation vulnerability in Squirrly SEO – Advanced Pack 2.3.8

The Squirrly SEO – Advanced Pack plugin for WordPress has a security vulnerability that affects all versions up to 2.3.8. This vulnerability can be exploited by anyone with administrator access or higher. It allows them to add extra SQL queries to existing queries, which can be used to access sensitive information stored in the database. This is caused by a lack of proper escaping of a user-supplied parameter and not preparing the existing SQL query properly.

Detected in:

Squirrly SEO - Advanced Pack open vulnerable versions: >= * <= 2.3.8

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.