Medium 6.1
2025-02-24< 2.5.9
SVG Support <= 2.5.8 - Stored Cross-Site Scripting via Vulnerability Dependency
Minimum safe version
2.5.11
Update to 2.5.11 or later to address 6 fixable vulnerabilities
SVG Support <= 2.5.8 - Stored Cross-Site Scripting via Vulnerability Dependency
CVE-2024-10222
CVE-2023-6708
WordPress SVG Support Plugin 2.5-2.5.1 is vulnerable to Cross Site Scripting (XSS)
CVE-2022-1755
CVE-2021-24686