Input validation vulnerability in Yoast SEO: Local 14.9

The Yoast SEO: Local plugin for WordPress is vulnerable to a type of security issue called Stored Cross-Site Scripting in versions up to 14.9. This means that someone with access to the website who is an authenticated contributor or higher can inject scripts into pages that will be executed any time a user visits those pages. This is possible because the plugin does not properly sanitize and escape user input.

Detected in:

Yoast SEO: Local fixed vulnerable versions: >= * <= 14.9

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.