Medium 6.3 Unfixed Closed
2024-10-16≤ 2.1.9.12
Freemius SDK <= 2.4.2 - Missing Authorization Checks
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress BAVOKO SEO Tools – All-in-One WordPress SEO Plugin <= 2.1.9.12 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.2.3 - Missing Authorization to Arbitrary Options Update
Freemius SDK <= 2.4.2 - Missing Authorization Checks
Freemius Library < 2.2.4 - Subscriber+ Arbitrary Option Update
WordPress BAVOKO SEO Tools – All-in-One WordPress SEO plugin <= 2.1.9.12 - Sensitive Information Disclosure vulnerability
WordPress BAVOKO SEO Tools – All-in-One WordPress SEO plugin <= 2.1.9.12 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability