High 7.7
2026-03-25< 2.5.0
CVE-2026-32441
Minimum safe version
2.5.0
Update to 2.5.0 or later to address 7 fixable vulnerabilities
CVE-2026-32441
WordPress WordPress Comments Import & Export Plugin <= 2.4.3 is vulnerable to Cross Site Scripting (XSS)
CVE-2024-7514
CVE-2024-31235
CVE-2022-45370
WordPress Comments Import & Export plugin <= 2.1.10 - Cross-Site Request Forgery (CSRF) vulnerability
WordPress Comments Import & Export plugin <= 2.0.4 - CSV Injection vulnerability