Shield: Blocks Bots, Protects Users, and Prevents Security Breaches

Vulnerabilities 11Slug wp-simple-firewallLatest version 21.2.6WordPress.org →

Minimum safe version

21.0.10

Update to 21.0.10 or later to address 11 fixable vulnerabilities

Latest available21.2.6
N/A
2026-02-18< 21.0.10

Shield Security <= 21.0.8 - Cross-Site Request Forgery to SQL Injection

N/A
2026-02-18< 21.0.10

Shield Security <= 21.0.8 - Unauthenticated Reflected Cross-Site Scripting via 'message' Parameter

Medium 4.3
2026-02-19< 21.0.10

CVE-2025-14427

Medium 4.3
2026-01-16< 21.0.10

CVE-2025-15370

Medium 4.3
2024-06-03< 19.1.11

WordPress Shield Security Plugin <= 19.1.10 is vulnerable to Cross Site Request Forgery (CSRF)