Relevanssi <= 4.24.5 (Free) and <= 2.27.6 (Premium) - Unauthenticated Stored Cross-Site Scripting via Excerpt Highlights
Relevanssi Premium
Minimum safe version
2.27.7
Update to 2.27.7 or later to address 11 fixable vulnerabilities
Medium 4.7
2025-05-31< 2.27.7
High 7.5
2025-05-13< 2.27.5
WordPress Relevanssi Premium Plugin <= 2.27.4 is vulnerable to SQL Injection
N/A
< 2.25
Relevanssi Pro < 2.25 - Unauthenticated Sensitive Information Exposure
Critical 9.8
2024-04-09< 2.25.2
CVE-2024-3214
N/A
< 2.25
WordPress Relevanssi Premium Plugin < 2.25 is vulnerable to Sensitive Data Exposure
N/A
2024-01-31< 2.25
Relevanssi Pro < 2.25 - Unauthenticated Sensitive Information Exposure
N/A
2024-01-04< 2.25.0
Relevanssi <= 4.21.2 (Free) and < 2.25.0 (Premium) - Missing Authorization to Unauthorized Post Access
N/A
< 2.16.5
Relevanssi - Subscriber+ Unauthorised AJAX Calls
N/A
2016-11-17< 1.14.5
WordPress Relevanssi Premium Plugin <= 1.14.4 - Multiple Vulnerabilities
N/A
2022-02-15< 2.16.5
WordPress Relevanssi Premium plugin <= 2.16.4 - Unauthorized AJAX Calls vulnerability
High 8.8
2019-09-13< 1.14.6.1
CVE-2016-10949