Medium 6.5 Unfixed
2025-10-27≤ 2.0.1
CVE-2025-62921
Minimum safe version
1.2.5
Update to 1.2.5 or later to address 5 fixable vulnerabilities
CVE-2025-62921
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Bulk Auto Image Title Attribute (Image Title tag) optimization (Image SEO) + Woocommerce Plugin < 1.2.5 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Bulk Auto Image Title Attribute (Image Title tag) optimization (Image SEO) + Woocommerce plugin < 1.2.3 - Sensitive Information Disclosure vulnerability
WordPress Bulk Auto Image Title Attribute (Image Title tag) optimization (Image SEO) + Woocommerce plugin < 1.2.3 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability