CVE-2024-10515: Squirrly Seo Plugin By Squirrly Seo

Low severity, CVSS 3.5. EPSS: 0.3% chance of exploitation in the next 30 days.

In the process of testing the SEO Plugin by Squirrly SEO WordPress plugin before 12.3.21, a vulnerability was found that allows you to implement Stored XSS on behalf of the editor by embedding malicious script, which entails account takeover backdoor

Affected products

  • Squirrly Seo Plugin By Squirrly Seo: before 12.3.21 (fixed in 12.3.21)

Published 2024-11-20. Last modified 2026-06-17.