Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

WP Meta SEO — Vulnerabilities & Security Advisories 17

All 17 CVE vulnerabilities found in WP Meta SEO, with AI-generated Chinese analysis, references, and POCs.

This page documents common vulnerability aggregations for the WP Meta SEO WordPress plugin, categorized by weakness type and associated security tags. It collects reported security issues ranging from cross-site scripting and privilege escalation to information disclosure flaws that have been identified in this specific software component over recent release cycles. By examining the compiled data, users can track vendor advisories related to WP Meta SEO, understand the mechanics behind prevalent weakness classes affecting its architecture, and look up the product’s historical vulnerability patterns to assess ongoing risk. The content focuses on general trends and categorizations rather than listing specific CVE identifiers, allowing for a broader view of the threat landscape. Readers interested in the security posture of this SEO management tool can explore how different attack vectors have been exploited or mitigated in past versions. This resource serves as a neutral reference for developers, site administrators, and security researchers seeking to contextualize known issues without promoting any particular vendor or product feature. The aim is to provide factual, structured information that supports informed decision-making regarding plugin updates and configuration hardening. Understanding these aggregated weaknesses helps stakeholders recognize common pitfalls in plugin development and maintenance, particularly for tools that handle metadata and search engine optimization data.

Vendor: Unknown

CVE IDTitleCVSSSeverityPublished
CVE-2026-9643 WP Meta SEO <= 4.5.18 - Unauthenticated Stored Cross-Site Scripting via REQUEST_URI in 404 Logging CWE-79 7.2 High2026-06-24
CVE-2026-11370 WP Meta SEO <= 4.5.18 - Authenticated (Contributor+) Server-Side Request Forgery via 'new_link' Parameter CWE-918 6.4 Medium2026-06-24
CVE-2024-45455 WordPress WP Meta SEO plugin <= 4.5.13 - Cross Site Scripting (XSS) vulnerability CWE-79 5.9 Medium2024-09-15
CVE-2024-45456 WordPress WP Meta SEO plugin <= 4.5.13 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium2024-09-15
CVE-2023-6961 WP Meta SEO <= 4.5.12 - Unauthenticated Stored Cross-Site Scripting via Referer header CWE-79 7.2 High2024-05-02
CVE-2023-6962 WP Meta SEO <= 4.5.12 - Information Exposure via Meta Description CWE-1230 5.3 Medium2024-05-02
CVE-2023-1381 WP Meta SEO < 4.5.5 - Author+ PHAR Deserialization 8.8 -2023-04-10
CVE-2023-0875 WP Meta SEO < 4.5.3 - Subscriber+ SQLi 8.8 -2023-03-20
CVE-2023-0876 WP Meta SEO < 4.5.3 - Subscriber+ Improper Authorization causing Arbitrary Redirect 4.7 -2023-03-20
CVE-2023-1022 WP Meta SEO <= 4.5.3 - Missing Authorization in 'wpmsGGSaveInformation' CWE-862 5.4 Medium2023-02-28
CVE-2023-1023 WP Meta SEO <= 4.5.3 - Missing Authorization in 'saveSitemapSettings' CWE-862 5.4 Medium2023-02-28
CVE-2023-1024 WP Meta SEO <= 4.5.3 - Missing Authorization in 'regenerateSitemaps' CWE-862 4.3 Medium2023-02-28
CVE-2023-1026 WP Meta SEO <= 4.5.3 - Missing Authorization in 'listPostsCategory' CWE-862 4.3 Medium2023-02-28
CVE-2023-1027 WP Meta SEO <= 4.5.3 - Missing Authorization in 'checkAllCategoryInSitemap' CWE-862 4.3 Medium2023-02-28
CVE-2023-1028 WP Meta SEO <= 4.5.3 - Cross-Site Request Forgery via 'setIgnore' CWE-352 4.3 Medium2023-02-28
CVE-2023-1029 WP Meta SEO <= 4.5.3 - Cross-Site Request Forgery via 'regenerateSitemaps' CWE-352 4.3 Medium2023-02-24
CVE-2022-1093 WP Meta SEO < 4.4.7 - Admin+ Stored Cross-Site Scripting via breadcrumbs CWE-79 4.8 -2022-05-23

All 17 known CVE vulnerabilities affecting WP Meta SEO with full Chinese analysis, references, and POCs where available.