CVE-2026-2986
Contextual Related Posts
Minimum safe version
4.2.2
Update to 4.2.2 or later to address 14 fixable vulnerabilities
CVE-2026-32565
CVE-2025-47506
WordPress Contextual Related Posts Plugin <= 3.3.1 is vulnerable to Broken Access Control
Contextual Related Posts <= 3.3.1 - Cross-Site Request Forgery in crpClearCache
Contextual Related Posts <= 3.3.1 - Missing Authorization in crp_ajax_clearcache
CVE-2023-0252
WordPress Contextual Related Posts Plugin <= 3.3.0 is vulnerable to Cross Site Scripting (XSS)
Contextual Related Posts <= 3.3.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Block Attribute
Contextual Related Posts <= 2.9.3 - Cross-Site Request Forgery
Contextual Related Posts < 2.9.4 - CSRF Nonce Validation Bypass
WordPress Contextual Related Posts plugin <= 2.9.3 - Cross-Site Request Forgery (CSRF) Nonce Validation Bypass vulnerability
Contextual Related Posts <= 1.8.6 - Cross-Site Request Forgery to Cross-Site Scripting
CVE-2014-3937