Medium 6.4
2025-11-03< 3.6.0
WordPress Inactive Logout Plugin <= 3.5.5 is vulnerable to Cross Site Scripting (XSS)
Minimum safe version
3.6.0
Update to 3.6.0 or later to address 5 fixable vulnerabilities
WordPress Inactive Logout Plugin <= 3.5.5 is vulnerable to Cross Site Scripting (XSS)
Inactive Logout < 3.2.3 - Cross-Site Request Forgery
CVE-2023-44142
Inactive Logout <= 3.2.2 - Cross-Site Request Forgery
Inactive Logout <= 3.2.2 - Missing Authorization