« Volver al listado

Squirrly

Squirrly SEO: vulnerabilidades y CVE

Squirrly SEO tiene 4 vulnerabilidades publicadas, 4 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE4
Últimos 12 meses4
Críticas0
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-94076Alta (8.8)0.36%—30 sept 2026
Contributor PHP Object Injection in SEO Plugin by Squirrly SEO <= 14.2.5 versions.
CVE-2026-66614Alta (7.1)0.25%—20 ago 2026
Unauthenticated Cross Site Scripting (XSS) in SEO Plugin by Squirrly SEO <= 14.2.2 versions.
CVE-2026-1667Alta (7.2)0.31%—10 jul 2026
The SEO Plugin by Squirrly SEO plugin for WordPress is vulnerable to Arbitrary Post Creation and Stored Cross-Site Scripting in all versions up to, and including, 14.0.0 due to a leak of an API token and insufficient…
CVE-2026-52714Media (5.9)0.29%—16 jun 2026
Unauthenticated Broken Access Control in SEO Plugin by Squirrly SEO <= 12.4.16 versions.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1059 Command and Scripting Interpreter1
  2. T1059.007 JavaScript1
  3. T1189 Drive-by Compromise1
  4. T1190 Exploit Public-Facing Application1
  5. T1210 Exploitation of Remote Services1
  6. T1565.003 Runtime Data Manipulation1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

Otros productos de Squirrly