Medium 4.3
2025-06-14< 2.27.22
CVE-2025-6059
Minimum safe version
2.28.15
Update to 2.28.15 or later to address 13 fixable vulnerabilities
CVE-2025-6059
Seraphinite Accelerator <= 2.28.14 - Authenticated (Subscriber+) Exposure of Sensitive Information to an Unauthorized Actor
Seraphinite Accelerator <= 2.28.14 - Missing Authorization to Authenticated (Subscriber+) Log Clearing
Seraphinite Accelerator <= 2.27.21 - Cross-Site Request Forgery to Multiple Administrative Actions
CVE-2024-54222
CVE-2024-1568
CVE-2024-22138
CVE-2023-49740
CVE-2023-5611
WordPress Seraphinite Accelerator Plugin <= 2.20.31 is vulnerable to Cross Site Request Forgery (CSRF)
Seraphinite Accelerator (Base, cache only) <= 2.20.31 - Cross-Site Request Forgery
CVE-2023-5610
CVE-2023-5609