N/A
2025-09-08< 3.1.58
Ditty <= 3.1.57 - Unauthenticated Server-Side Request Forgery
Minimum safe version
3.1.59
Update to 3.1.59 or later to address 14 fixable vulnerabilities
Ditty <= 3.1.57 - Unauthenticated Server-Side Request Forgery
Ditty <= 3.1.58 - Authenticated (Contributor+) Stored Cross-Site Scripting
CVE-2024-13357
CVE-2024-9600
CVE-2024-6715
CVE-2024-6710
WordPress Ditty Plugin < 3.1.43 is vulnerable to Cross Site Scripting (XSS)
CVE-2024-3939
CVE-2024-3954
CVE-2024-32569
CVE-2023-47764
WordPress Ditty Plugin < 3.1.25 is vulnerable to Cross Site Scripting (XSS)
CVE-2023-23874
CVE-2022-0533