Medium 5.4
2024-08-26< 2.7.0
WordPress Custom Permalinks Plugin <= 2.6.0 is vulnerable to Cross Site Scripting (XSS)
Minimum safe version
2.7.0
Update to 2.7.0 or later to address 7 fixable vulnerabilities
WordPress Custom Permalinks Plugin <= 2.6.0 is vulnerable to Cross Site Scripting (XSS)
Custom Permalinks <= 1.1 -Cross-Site Scripting
Custom Permalinks <= 1.1 - Authenticated SQL Injection
Custom Permalinks <= 1.1 - Cross-Site Scripting (XSS)
Custom Permalinks <= 1.1 - Authenticated SQL Injection
WordPress Custom Permalinks plugin <=1.1 - Cross-Site Scripting (XSS) vulnerability
WordPress Custom Permalinks plugin <=1.1 - Authenticated SQL Injection (SQLi) vulnerability