CVE-2026-24938
Better Search – Relevant search results for WordPress
Minimum safe version
4.2.2
Update to 4.2.2 or later to address 19 fixable vulnerabilities
CVE-2025-47507
CVE-2024-29142
CVE-2021-4400
CVE-2021-4342
CVE-2021-4373
WordPress Better Search Plugin <= 3.1.0 is vulnerable to Cross Site Request Forgery (CSRF)
Better Search <= 3.1.0 - Cross-Site Request Forgery
Better Search <= 1.3.4 - Reflected Cross-Site Scripting
Better Search < 2.2.3 - SQL Injection
Various Affected Software (Various Versions) - Cross-Site Request Forgery Bypass
Better Search <= 2.5.2 - Cross-Site Request Forgery to Settings Import
Better Search < 1.3 - admin.inc.php Setting Manipulation CSRF
Better Search < 1.3.5 - Reflected Cross-Site Scripting (XSS)
Better Search 2.2.2 - Unauthenticated SQL Injection
Better Search < 2.5.3 - CSRF Nonce Bypass in Import/Export
WordPress Better Search Plugin <= 1.3.4 - Reflective XSS
WordPress Better Search Plugin <= 1.2.1 - CSRF
WordPress Better Search plugin <= 2.5.2 - Cross-Site Request Forgery (CSRF) vulnerability