Medium 6.1
2026-05-01< 5.5.32
CVE-2024-13362
Minimum safe version
5.5.64
Update to 5.5.64 or later to address 12 fixable vulnerabilities
CVE-2024-13362
WP Data Access <= 5.5.63 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'wpda_app' Shortcode
CVE-2025-39582
CVE-2024-12428
Freemius SDK <= 2.4.2 - Missing Authorization Checks
CVE-2024-43295
WordPress WP Data Access Plugin < 5.3.11 is vulnerable to Cross Site Scripting (XSS)
CVE-2023-1874
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress WP Data Access plugin < 5.1.4 - Sensitive Information Disclosure vulnerability
WordPress WP Data Access plugin < 5.1.4 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability
CVE-2021-24866