Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 31 Mar 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:squirrly:seo_plugin_by_squirrly_seo:*:*:*:*:*:wordpress:*:* |
Wed, 20 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Squirrly
Squirrly seo Plugin By Squirrly Seo |
|
| CPEs | cpe:2.3:a:squirrly:seo_plugin_by_squirrly_seo:-:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Squirrly
Squirrly seo Plugin By Squirrly Seo |
|
| Metrics |
cvssV3_1
|
Wed, 20 Nov 2024 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In the process of testing the SEO Plugin by Squirrly SEO WordPress plugin before 12.3.21, a vulnerability was found that allows you to implement Stored XSS on behalf of the editor by embedding malicious script, which entails account takeover backdoor | |
| Title | SEO Plugin by Squirrly SEO < 12.3.21 - Editor+ Stored XSS | |
| References |
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2024-11-20T15:33:58.689Z
Reserved: 2024-10-29T19:54:18.213Z
Link: CVE-2024-10515
Updated: 2024-11-20T15:33:18.569Z
Status : Analyzed
Published: 2024-11-20T06:15:15.777
Modified: 2025-03-31T19:33:29.490
Link: CVE-2024-10515
No data.
OpenCVE Enrichment
No data.