Vulnerabilities (CVE)

Filtered by vendor Semperplugins Subscribe
Filtered by product All In One Seo Pack
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-35946 1 Semperplugins 1 All In One Seo Pack 2024-02-28 3.5 LOW 5.4 MEDIUM
An issue was discovered in the All in One SEO Pack plugin before 3.6.2 for WordPress. The SEO Description and Title fields are vulnerable to unsanitized input from a Contributor, leading to stored XSS.
CVE-2013-5988 1 Semperplugins 1 All In One Seo Pack 2024-02-28 4.3 MEDIUM 6.1 MEDIUM
A Cross-site Scripting (XSS) vulnerability exists in the All in One SEO Pack plugin before 2.0.3.1 for WordPress via the Search parameter.
CVE-2019-16520 1 Semperplugins 1 All In One Seo Pack 2024-02-28 3.5 LOW 5.4 MEDIUM
The all-in-one-seo-pack plugin before 3.2.7 for WordPress (aka All in One SEO Pack) is susceptible to Stored XSS due to improper encoding of the SEO-specific description for posts provided by the plugin via unsafe placeholder replacement.