Input validation vulnerability in Yoast SEO 22.6

The Yoast SEO plugin for WordPress has a security issue called Stored Cross-Site Scripting. This means that certain information, specifically the author’s display name, is not properly protected and can be used by hackers to insert malicious code into web pages. This can happen if the attacker has a certain level of access to the site and can cause the code to run whenever someone visits the affected page.

Detected in:

Yoast SEO fixed vulnerable versions: >= * <= 22.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.