Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1110 CNY

100%

SEO Plugin by Squirrly SEO — Vulnerabilities & Security Advisories 12

All 12 CVE vulnerabilities found in SEO Plugin by Squirrly SEO, with AI-generated Chinese analysis, references, and POCs.

This page aggregates known vulnerabilities for the Squirrly SEO plugin, a popular WordPress SEO tool developed by Squirrly. It compiles security issues affecting this specific software product, covering common weakness types such as cross-site scripting, unauthorized access, and path traversal flaws. The collection includes details on reported security incidents ranging from early releases to recent updates, providing a comprehensive view of the product's security posture over time. Users can utilize this resource to track vendor advisories, understand the frequency and severity of a weakness class within this ecosystem, and look up a product's vulnerability history to assess risk before installation or update. By centralizing this information, the page aims to help developers, site administrators, and security researchers identify potential threats and prioritize remediation efforts. It serves as a reference point for understanding how the Squirrly SEO plugin has been affected by various security challenges, enabling informed decisions regarding plugin maintenance and WordPress site security. The data reflects publicly reported vulnerabilities and does not include speculative or unconfirmed issues. Readers can explore the listed entries to gain insight into the types of attacks that have impacted this tool and the measures taken to address them. This resource is intended for informational purposes to support better security hygiene in WordPress environments using this specific plugin.

Vendor: Unknown

CVE IDTitleCVSSSeverityPublished
CVE-2025-14342 SEO Plugin by Squirrly SEO <= 12.4.14 - Missing Authorization to Authenticated (Subscriber+) Cloud Service Disconnection CWE-862 4.3 Medium2026-02-19
CVE-2025-22783 WordPress SEO Plugin by Squirrly SEO plugin <= 12.4.03 - SQL Injection vulnerability CWE-89 8.5 High2025-03-27
CVE-2025-1768 SEO Plugin by Squirrly SEO <= 12.4.05 - Authenticated (Subscriber+) SQL Injection via search Parameter CWE-89 6.5 Medium2025-03-07
CVE-2025-24654 WordPress Squirrly SEO plugin <= 12.4.07 - Broken Access Control vulnerability CWE-862 7.1 High2025-03-03
CVE-2024-10515 SEO Plugin by Squirrly SEO < 12.3.21 - Editor+ Stored XSS 6.1AIMediumAI2024-11-20
CVE-2024-43286 WordPress Squirrly SEO plugin <= 12.3.19 - SQL Injection vulnerability CWE-89 8.5 High2024-08-18
CVE-2024-6497 SEO Plugin by Squirrly SEO <= 12.3.19 - Authenticated (Contributor+) SQL Injection via url Parameter CWE-89 8.8 High2024-07-20
CVE-2024-29790 WordPress Squirrly SEO plugin <= 12.3.16 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2024-03-27
CVE-2022-44626 WordPress Squirrly SEO (Peaks) plugin <= 12.1.20 - Broken Access Control vulnerability CWE-862 6.3 Medium2024-03-25
CVE-2024-0597 SEO Plugin by Squirrly SEO <= 12.3.15 - Authenticated(Administrator+) Stored Cross-Site Scripting via plugin settings CWE-79 4.4 Medium2024-02-05
CVE-2022-45065 WordPress SEO Plugin by Squirrly SEO Plugin <= 12.1.20 is vulnerable to Cross Site Scripting (XSS) CWE-79 7.1 High2023-05-08
CVE-2021-25019 SEO Plugin by Squirrly SEO < 11.1.12 - Reflected Cross-Site Scripting CWE-79 6.1 -2022-03-21

All 12 known CVE vulnerabilities affecting SEO Plugin by Squirrly SEO with full Chinese analysis, references, and POCs where available.