Medium 5.3
2025-08-28< 4.13.2
Ajax Search Lite <= 4.13.1 - Missing Authorization to Unauthenticated Basic Information Exposure via ASL_Query in AJAX Search Handler
Minimum safe version
4.13.4
Update to 4.13.4 or later to address 14 fixable vulnerabilities
Ajax Search Lite <= 4.13.1 - Missing Authorization to Unauthenticated Basic Information Exposure via ASL_Query in AJAX Search Handler
CVE-2025-48086
CVE-2024-13585
CVE-2024-10568
Ajax Search Lite <= 4.12.1 - Authenticated (Administrator+) Stored Cross-Site Scripting
CVE-2024-7084
CVE-2024-21752
CVE-2023-1420
CVE-2022-38456
Ajax Search Lite < 3.11 - Remote Code Execution
Ajax Search Lite < 3.11 - Missing Authorization to Remote Code Execution
Ajax Search Lite <= 3.1 - Authenticated RCE
WordPress Ajax Search Pro Plugin - Remote Code Execution
WordPress Ajax Search Lite Plugin <= 3.1 - Remote Code Execution