N/A
2025-12-22< 3.12.1
CVE-2025-62880
Minimum safe version
3.12.1
Update to 3.12.1 or later to address 14 fixable vulnerabilities
CVE-2025-62880
WordPress Custom 404 Pro Plugin <= 3.12.0 is vulnerable to SQL Injection
CVE-2024-39646
WordPress Custom 404 Pro Plugin <= 3.10.0 is vulnerable to Cross Site Scripting (XSS)
Custom 404 Pro <= 3.7.2 - Unauthenticated SQL Injection
CVE-2023-2032
CVE-2023-32740
CVE-2023-2023
WordPress Custom 404 Pro Plugin <= 3.7.2 is vulnerable to SQL Injection
CVE-2022-47605
CVE-2023-0385
Custom 404 Pro <= 3.7.0 - Authenticated (Administrator+) SQL Injection
WordPress Custom 404 Pro plugin <= 3.2.7 - Authenticated Reflected Cross-Site Scripting (XSS) vulnerability
CVE-2019-14789
CVE-2019-15838