All 4 CVE vulnerabilities found in SEOPress – On-site SEO & Analytics, with AI-generated Chinese analysis, references, and POCs.
Vendor: rainbowgeek
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2024-9225 | SEOPress – On-site SEO <= 8.1.1 - Reflected Cross-Site Scripting CWE-79 | 6.1 | Medium | 2024-10-02 |
| CVE-2024-1168 | SEOPress – On-site SEO <= 7.9 - Authenticated(Contributor+) Stored Cross-Site Scripting via Social Image URL CWE-79 | 6.4 | Medium | 2024-06-20 |
| CVE-2024-1134 | SEOPress – On-site SEO <= 7.5.2.1 - Authenticated (Contributor+) Stored Cross-Site Scripting CWE-79 | 6.4 | Medium | 2024-05-24 |
| CVE-2024-2165 | SEOPress – On-site SEO <= 7.5.2.1 - Authenticated (Author+) Stored Cross-Site Scripting CWE-20 | 6.4 | Medium | 2024-04-09 |
All 4 known CVE vulnerabilities affecting SEOPress – On-site SEO & Analytics with full Chinese analysis, references, and POCs where available.