Critical 9.8
2025-03-14< 1.2.9
WordPress Realteo Plugin <= 1.2.8 is vulnerable to Broken Authentication
Minimum safe version
1.2.9
Update to 1.2.9 or later to address 5 fixable vulnerabilities
WordPress Realteo Plugin <= 1.2.8 is vulnerable to Broken Authentication
WordPress Realteo premium plugin <= 1.2.3 - Authenticated Insecure Direct Object References (IDOR) vulnerability
WordPress Realteo premium plugin <= 1.2.3 - Unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability
CVE-2021-24238
CVE-2021-24237