High 7.1 Unfixed
2025-10-22≤ 1.4.1
CVE-2025-52742
Minimum safe version
1.4.1
Update to 1.4.1 or later to address 3 fixable vulnerabilities
CVE-2025-52742
WordPress Pets Plugin <= 1.4.1 is vulnerable to Cross Site Scripting (XSS)
Unauthorised AJAX Calls via Freemius
WordPress Pets plugin <= 1.4.0 - Sensitive Information Disclosure vulnerability
WordPress Pets plugin <= 1.4.0 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability