CVE-2025-14719
Relevanssi – A Better Search
Minimum safe version
4.26.0
Update to 4.26.0 or later to address 28 fixable vulnerabilities
Relevanssi <= 4.24.5 (Free) and <= 2.27.6 (Premium) - Unauthenticated Stored Cross-Site Scripting via Excerpt Highlights
Relevanssi <= 4.24.4 (Free) and <= 2.27.5 (Premium) - Unauthenticated SQL Injection
Relevanssi <= 4.24.3 (Free) and <= 2.27.4 (Premium) - Unauthenticated Stored Cross-Site Scripting via Search Highlights
CVE-2024-9021
CVE-2024-7630
CVE-2024-3213
CVE-2024-3214
CVE-2024-1380
WordPress Relevanssi Plugin < 4.22 is vulnerable to Sensitive Data Exposure
CVE-2023-7199
Relevanssi 3.2 - Unspecified SQL Injection
Relevanssi 2.7.2 - Stored XSS
Relevanssi <= 3.6.0 - Authenticated Admin SQL Injection
Relevanssi - A Better Search < 4.14.3 - Unauthenticated Stored Cross-Site Scripting
Relevanssi - Subscriber+ Unauthorised AJAX Calls
Relevanssi <= 3.3 - SQL Injection
Relevanssi <= 3.6.0 - Authenticated (Admin+) SQL Injection
Relevanssi - A Better Search Free & Premium <= 2.16.3 & 4.14.3 - Stored Cross-Site Scripting
Relevanssi – A Better Search < 4.14.6 & Relevanssi – A Better Search Pro < 2.16.5 - Missing Authorization
WordPress Relevanssi Plugin - SQL Injection
WordPress Relevanssi Plugin <= 3.2 - SQL Injection
WordPress Relevanssi plugin <= 4.14.2 - Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability
WordPress Relevanssi – A Better Search plugin <= 4.14.5 - Unauthorized AJAX Calls vulnerability
WordPress Relevanssi Plugin 2.7.2- Stored XSS
Relevanssi – A Better Search < 3.3.8 - Cross-Site Scripting
CVE-2017-1000038
WordPress Relevanssi plugin <=4.0.4 - Cross-Site Scripting (XSS) vulnerability