{"error":0,"message":null,"data":{"name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings","plugin":"seo-by-rank-math","link":"https:\/\/wordpress.org\/plugins\/seo-by-rank-math\/","latest":"1788849300","closed":0,"closed_reason":null,"closed_date":null,"vulnerability":[{"uuid":"2351b9610067d94a563d9e2307183ac4f1b1e2cd97896e3f01256d9b848c152b","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.0.41","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.0.41","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2020-11514","name":"CVE-2020-11514","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2020-11514","description":"[en] The Rank Math plugin through 1.0.40.2 for WordPress allows unauthenticated remote attackers to update arbitrary WordPress metadata, including the ability to escalate or revoke administrative privileges for existing users via the unsecured rankmath\/v1\/updateMeta REST API endpoint.","date":"2020-04-07"},{"id":"df9229b8aee834842e0179e81607f6c8335793fe","name":"Rank Math SEO <= 1.0.40.2 - Privilege Escalation via Unprotected REST API Endpoint","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-10402-privilege-escalation-via-unprotected-rest-api-endpoint","description":"The Rank Math plugin through 1.0.40.2 for WordPress allows unauthenticated remote attackers to update arbitrary WordPress metadata, including the ability to escalate or revoke administrative privileges for existing users via the unsecured rankmath\/v1\/updateMeta REST API endpoint.","date":"2020-03-25"},{"id":"d2ddd248-52a0-4c91-92e8-beb60d8f78cd","name":"WordPress SEO Plugin - Rank Math &lt; 1.0.41 - Privilege Escalation via Unprotected REST API Endpoint","link":"https:\/\/wpscan.com\/vulnerability\/d2ddd248-52a0-4c91-92e8-beb60d8f78cd","description":"This plugin registered a REST-API endpoint, rankmath\/v1\/updateMeta, which failed to include a permission_callback used for capability checking. The endpoint called a function, update_metadata which could be used to update the slug on existing posts, or could be used to delete or update metadata for posts, comments, and terms. This endpoint also allowed for updating metadata for users. WordPress user permissions are stored in the usermeta table, which meant that an unauthenticated attacker could grant or revoke administrative privileges for any registered user.","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:H\/I:H\/A:H","av":"n","ac":"l","pr":"n","ui":"n","s":"u","c":"h","i":"h","a":"h","score":"9.8","severity":"c","exploitable":"3.9","impact":"5.9"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:H\/I:H\/A:H","score":"9.8","severity":"critical","av":"network","ac":"low","pr":"none","ui":"none","s":"unchanged","c":"high","i":"high","a":"high","exploitable":"3.9","impact":"5.9"},"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}]}},{"uuid":"1ae50fae364c93b7190b74e5fbff0a3adbd8b2d1173dc80a65034160c90c7620","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.0.41","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.0.41","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2020-11515","name":"CVE-2020-11515","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2020-11515","description":"[en] The Rank Math plugin through 1.0.40.2 for WordPress allows unauthenticated remote attackers to create new URIs (that redirect to an external web site) via the unsecured rankmath\/v1\/updateRedirection REST API endpoint. In other words, this is not an \"Open Redirect\" issue; instead, it allows the attacker to create a new URI with an arbitrary name (e.g., the \/exampleredirect URI).","date":"2020-04-07"},{"id":"a2a1ae04b3e160ad04167f8baded56ced8fdb3a4","name":"Rank Math SEO <= 1.0.40.2 - Redirect Creation via Unprotected REST API Endpoint","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-10402-redirect-creation-via-unprotected-rest-api-endpoint","description":"The Rank Math plugin through 1.0.40.2 for WordPress allows unauthenticated remote attackers to create new URIs (that redirect to an external web site) via the unsecured rankmath\/v1\/updateRedirection REST API endpoint. In other words, this is not an \"Open Redirect\" issue; instead, it allows the attacker to create a new URI with an arbitrary name (e.g., the \/exampleredirect URI).","date":"2020-03-25"},{"id":"eadfce09-978a-4b18-97c1-1267636b7325","name":"WordPress SEO Plugin - Rank Math &lt; 1.0.41 - Redirect Creation via Unprotected REST API Endpoint","link":"https:\/\/wpscan.com\/vulnerability\/eadfce09-978a-4b18-97c1-1267636b7325","description":"The WordPress SEO Plugin &ndash; Rank Math plugin includes a number of optional modules, including a module that can be used to create redirects on a site. In order to add this feature, the plugin registered a REST-API endpoint, rankmath\/v1\/updateRedirection, which  failed to include a permission_callback for capability checking. The endpoint called a function, update_redirection, which could be used to create new redirects or modify existing redirects, with an important limitation. The redirect could not be set to an existing file or folder on the server, including the site&rsquo;s main page. This limited the damage to some extent in that, while an attacker could create a redirect from most locations on the site, including new locations, or any existing post or page other than the homepage, they could not redirect visitors immediately upon accessing the site.","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"6.1","severity":"m","exploitable":"2.8","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"6.1","severity":"medium","av":"network","ac":"low","pr":"none","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"2.8","impact":"2.7"},"cwe":[{"cwe":"CWE-601","name":"URL Redirection to Untrusted Site ('Open Redirect')","description":"The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect."}]}},{"uuid":"865698eab9c1ce6b911576d40d7dfd9c99f574d73cdbdc136cada548da95f6c4","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.27.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.27.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2019-14786","name":"CVE-2019-14786","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2019-14786","description":"[en] The Rank Math SEO plugin 1.0.27 for WordPress allows non-admin users to reset the settings via the wp-admin\/admin-post.php reset-cmb parameter.","date":"2019-08-15"},{"id":"d661579055bf66313f89b9901a565006efb7962e","name":"Rank Math SEO <= 1.0.27 - Authenticated Settings Reset via reset-cmb Parameter","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-1027-authenticated-settings-reset-via-reset-cmb-parameter","description":"The Rank Math SEO plugin 1.0.27 for WordPress allows non-admin users to reset the settings via the wp-admin\/admin-post.php reset-cmb parameter.","date":"2019-06-21"},{"id":"0ba2cca4-5255-40ec-9948-7653da030d7e","name":"Seo By Rank Math &lt;= 1.0.27 - Authenticated Settings Reset","link":"https:\/\/wpscan.com\/vulnerability\/0ba2cca4-5255-40ec-9948-7653da030d7e","description":"Allows any authenticated user (with a role as low as subscriber) to reset Settings of the plugin.","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:H\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"u","c":"n","i":"h","a":"n","score":"6.5","severity":"m","exploitable":"2.8","impact":"3.6"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:H\/A:N","score":"6.5","severity":"medium","av":"network","ac":"low","pr":"low","ui":"none","s":"unchanged","c":"none","i":"high","a":"none","exploitable":"2.8","impact":"3.6"},"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}]}},{"uuid":"d171dacac5c5942d967634c582d7eeac888538d6319244cdeb8312eb828fe26b","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.27.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.27.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"30d6ce716f6e553927a3dde4415b922f806c0cc4","name":"WordPress SEO By Rank Math plugin <= 1.0.27 - Authenticated Settings Reset vulnerability","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/seo-by-rank-math\/vulnerability\/wordpress-seo-by-rank-math-plugin-1-0-27-authenticated-settings-reset-vulnerability","description":"Authenticated Settings Reset vulnerability found in WordPress SEO By Rank Math plugin (versions <= 1.0.27).","date":"2019-06-25"}],"impact":[]},{"uuid":"49859c410c18784dce32f213947d3c3ac4acb1f15453df3eb9b3c1af8b4ee32f","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.27","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.27","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"379140fba1759d06e55d8e7478e5511caeefecf3","name":"WordPress SEO by Rank Math plugin <= 1.0.26 - Cross-Site Scripting (XSS) vulnerabilities","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/seo-by-rank-math\/vulnerability\/wordpress-seo-by-rank-math-plugin-1-0-26-cross-site-scripting-xss-vulnerabilities","description":"Cross-Site Scripting (XSS) vulnerabilities found in WordPress SEO by Rank Math (versions <= 1.0.26).","date":"2019-06-18"}],"impact":[]},{"uuid":"8ae2e493f849256a9d68b19e23e1bd82da879b20d252c4199da1d77be2eebf18","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.95.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.95.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2022-36376","name":"CVE-2022-36376","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2022-36376","description":"[en] Server-Side Request Forgery (SSRF) vulnerability in Rank Math SEO plugin <= 1.0.95 at WordPress.","date":"2022-09-09"},{"id":"cee229be9d6caa82835d797b496efea8af84e2ce","name":"Rank Math SEO <= 1.0.95 - Server-Side Request Forgery","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-1095-server-side-request-forgery","description":"The Rank Math SEO plugin for WordPress is vulnerable to Server Side Request Forgery in versions up to, and including 1.0.95, due to insufficient user input validation.","date":"2022-08-12"},{"id":"8f667bf0d700876928b04c8d4c5063e69075b30a","name":"WordPress  Rank Math SEO Plugin  <= 1.0.95 is vulnerable to Server Side Request Forgery (SSRF)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/seo-by-rank-math\/vulnerability\/wordpress-rank-math-seo-plugin-1-0-95-server-side-request-forgery-ssrf-vulnerability","description":"Update the WordPress WordPress SEO Plugin \u2013 Rank Math plugin to the latest available version (at least 1.0.95.1).\nRafie Muhammad (Patchstack) discovered and reported this Server Side Request Forgery (SSRF) vulnerability in WordPress Rank Math SEO Plugin. This could allow a malicious actor to cause a website to execute website requests to an arbitrary domain of the attacker. This could allow a malicious actor to find sensitive information of other services running on the system. This vulnerability has been fixed in version 1.0.95.1.","date":"2023-08-12"},{"id":"1180e8b9-9f9d-457a-bc4d-abafa72ccc66","name":"Rank Math SEO &lt; 1.0.95.1 - Unauthenticated SSRF","link":"https:\/\/wpscan.com\/vulnerability\/1180e8b9-9f9d-457a-bc4d-abafa72ccc66","description":"The plugin does not properly restrict access to some .htaccess blocked REST endpoints when the headless settings is enabled, which could allow unauthenticated attackers to perform SSRF attacks","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:H\/PR:N\/UI:N\/S:C\/C:H\/I:N\/A:N","av":"n","ac":"h","pr":"n","ui":"n","s":"c","c":"h","i":"n","a":"n","score":"6.8","severity":"m","exploitable":"3.9","impact":"5.9"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:H\/PR:N\/UI:N\/S:C\/C:H\/I:N\/A:N","score":"6.8","severity":"medium","av":"network","ac":"high","pr":"none","ui":"none","s":"changed","c":"high","i":"none","a":"none","exploitable":"3.9","impact":"5.9"},"cwe":[{"cwe":"CWE-918","name":"Server-Side Request Forgery (SSRF)","description":"The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"994e6855ed098bdd996e288c0a80d159b8ec9e4f235415c47177b57e9b7d6dff","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.42.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.42.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"4ae1d70f73a964b8a5f9fd4ba0b32e842cb23e31","name":"Rank Math SEO <= 1.0.42.1 - Missing Authorization","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-10421-missing-authorization","description":"The Rank Math SEO plugin for WordPress is vulnerable to authorization bypass due to missing access controls on its \"disable competitor plugins\" functionality in versions up to, and including, 1.0.42.1. This makes it possible for subscriber-level attackers to disable other SEO or sitemap plugins on the site.","date":"2020-04-18"}],"impact":[]},{"uuid":"d318cf3b79edd1516d166f08469c3ed39a805a2442aa8c8fe8b336a958df8b16","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.27","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.27","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"d29ac46a080cb84b3bde03689d3535b333b0a2ca","name":"Rank Math SEO <= 1.0.26 - Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-1026-cross-site-scripting","description":"The Rank Math SEO is vulnerable to Cross-Site Scripting via several parameters in versions up to, and including 1.0.26.","date":"2019-06-18"}],"impact":[]},{"uuid":"8798148b2f495a0cb4cfcfe1c3116ad84847419b5adc740611ff14d72f6baade","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.119.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.119.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2023-23888","name":"CVE-2023-23888","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2023-23888","description":"[en] Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Rank Math Rank Math SEO allows Path Traversal.This issue affects Rank Math SEO: from n\/a through 1.0.107.2.","date":"2024-05-17"},{"id":"7b0a0ca9e3ba0d8fcbd16f371ce1cf8c35fccc86","name":"WordPress  Rank Math SEO Plugin  <= 1.0.107.2 is vulnerable to Local File Inclusion","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/seo-by-rank-math\/vulnerability\/wordpress-rank-math-seo-plugin-1-0-107-2-local-file-inclusion-vulnerability","description":"Update the Rank Math SEO plugin to the latest available version (at least 1.0.107.3).\nRafie Muhammad (Patchstack) discovered and reported this Local File Inclusion vulnerability in WordPress Rank Math SEO Plugin. This could allow a malicious actor to include local files of the target website and show its output onto the screen. Files which store credentials, such as database credentials, could potentially allow complete database takeover. This vulnerability has been fixed in version 1.0.107.3.","date":"2023-02-10"},{"id":"2b12083e-a7cf-4634-8f45-015275a096d4","name":"Rank Math SEO &lt; 1.0.107.3 - Contributor+ LFI","link":"https:\/\/wpscan.com\/vulnerability\/2b12083e-a7cf-4634-8f45-015275a096d4","description":"The plugin does not validate paths in the update_schemas and get_snippet_content functions, which could allow users with a role of contributor and above to perform LFI attacks","date":null},{"id":"70920f607d8f198be39c3b0a39139c2b6ebf783c","name":"RankMath SEO <= 1.0.107.2 - Authenticated (Contributor+) Local File Inclusion","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rankmath-seo-101072-authenticated-contributor-local-file-inclusion","description":"The RankMath SEO plugin for WordPress is vulnerable to Local File Inclusion via the 'update_schemas' and 'get_snippet_content' functions. This allows authenticated attackers, with contributor-level permissions and above, to include and execute arbitrary PHP files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls or obtain sensitive data.","date":"2023-01-30"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:H\/I:L\/A:L","av":"n","ac":"l","pr":"l","ui":"n","s":"u","c":"h","i":"l","a":"l","score":"7.6","severity":"h","exploitable":"2.8","impact":"5.9"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:H\/I:L\/A:L","score":"7.6","severity":"high","av":"network","ac":"low","pr":"low","ui":"none","s":"unchanged","c":"high","i":"low","a":"low","exploitable":"2.8","impact":"5.9"},"cwe":[{"cwe":"CWE-22","name":"Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')","description":"The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"e1f89695ec7f0fe146f69496fe98d27f9b5b3bff273765c27b5e32a7c0bd9747","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.119.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.119.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"b890e2d32060f28d5bf5081382f42be4b9d49d72","name":"Rank Math SEO <= 1.0.119 - Authenticated (Contributor+) Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-10119-cross","description":"The Rank Math SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in versions up to, and including, 1.0.119 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2023-07-17"},{"id":"CVE-2023-32600","name":"CVE-2023-32600","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2023-32600","description":"[en] Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Rank Math SEO plugin <=\u00a01.0.119 versions.","date":"2023-08-05"},{"id":"e1cb7fc71549f79f30aea8198aecbbb4036424ed","name":"WordPress  Rank Math SEO Plugin  <= 1.0.119 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/seo-by-rank-math\/vulnerability\/wordpress-rank-math-seo-plugin-1-0-119-cross-site-scripting-xss-vulnerability","description":"Update the WordPress Rank Math SEO plugin to the latest available version (at least 1.0.119.1).\nRafie Muhammad (Patchstack) discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Rank Math SEO Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site.  This vulnerability has been fixed in version 1.0.119.1.","date":"2023-07-17"},{"id":"ba2936fc-7098-4834-8985-4c00d6ebdbbe","name":"Rank Math SEO &lt; 1.0.119.1 - Contributor+ Stored XSS","link":"https:\/\/wpscan.com\/vulnerability\/ba2936fc-7098-4834-8985-4c00d6ebdbbe","description":"The plugin does not validate and escape some of its shortcode attributes before outputting them back in a page\/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:R\/S:C\/C:L\/I:L\/A:L","av":"n","ac":"l","pr":"l","ui":"r","s":"c","c":"l","i":"l","a":"l","score":"6.5","severity":"m","exploitable":"2.3","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:R\/S:C\/C:L\/I:L\/A:L","score":"6.5","severity":"medium","av":"network","ac":"low","pr":"low","ui":"required","s":"changed","c":"low","i":"low","a":"low","exploitable":"2.3","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"4e1d476f91a84d652758c9c3ed99c616a7bd7618a1931c01552bb6b930e61a71","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.42.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.42.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"4f92af29-b9af-4786-9b29-373aba7de0c2","name":"Rank Math 0.9~1.0.42.1 - Authenticated Missing Access Controls to Disable Competitor Plugins","link":"https:\/\/wpscan.com\/vulnerability\/4f92af29-b9af-4786-9b29-373aba7de0c2","description":"Missing access controls on the GET requests to deactivate competitors&#039; plugins. This could allow any authenticated users (such as subscribers) to deactivate the SEO and Sitemap plugins from competitors. The attack could also be performed via CSRF.","date":null}],"impact":[]},{"uuid":"b3c421e51ef43cb757690133266b027fb9fb006f4da5693f9c22bf80a73e785d","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.27","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.27","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"530de2b3-d5eb-43e3-8b62-451726af8ce9","name":"Seo by Rank Math &lt;= 1.0.26 - XSS Issues","link":"https:\/\/wpscan.com\/vulnerability\/530de2b3-d5eb-43e3-8b62-451726af8ce9","description":"The changelog file states &quot;Added some important security fixes&quot;, and various variables can be found being HTML escaped in the code changes.","date":null}],"impact":[]},{"uuid":"491df0941f30c44a03aac03d824664882ae45aa557f1f3a0489d43b1306fd211","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.215","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.215","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-2536","name":"CVE-2024-2536","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-2536","description":"[en] The Rank Math SEO with AI SEO Tools plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the HowTo block attributes in all versions up to, and including, 1.0.214 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-04-09"},{"id":"26c026e919bfec4c91ea671c4bb0b0a514b95136","name":"Rank Math SEO with AI SEO Tools <= 1.0.214 - Authenticated(Contributor+) Stored Cross-Site Scripting via HowTo block attributes","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-with-ai-seo-tools-10214-authenticatedcontributor-stored-cross-site-scripting-via-howto-block-attributes","description":"The Rank Math SEO with AI SEO Tools plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the HowTo block attributes in all versions up to, and including, 1.0.214 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-03-21"},{"id":"532042b5585283058cd76c221235971fe6d54ca7","name":"WordPress  Rank Math SEO Plugin    <= 1.0.214 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/seo-by-rank-math\/vulnerability\/wordpress-rank-math-seo-plugin-1-0-214-authenticated-contributor-stored-cross-site-scripting-via-howto-block-attributes-vulnerability","description":"Update the WordPress Rank Math SEO plugin to the latest available version (at least 1.0.215).\nNg\u00f4 Thi\u00ean An (ancorn_) discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Rank Math SEO Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site.  This vulnerability has been fixed in version 1.0.215.\nHave additional information or questions about this entry? Get in touch.","date":null},{"id":"bb4d035c-217b-4488-b698-fac897837840","name":"Rank Math SEO with AI SEO Tools &lt; 1.0.215 - Contributor+ Stored XSS","link":"https:\/\/wpscan.com\/vulnerability\/bb4d035c-217b-4488-b698-fac897837840","description":"The Rank Math SEO with AI SEO Tools plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the HowTo block attributes in all versions up to, and including, 1.0.214 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"5.4","severity":"m","exploitable":"2.3","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"5.4","severity":"medium","av":"network","ac":"low","pr":"low","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"2.3","impact":"2.7"},"cwe":[{"cwe":"CWE-20","name":"Improper Input Validation","description":"The product receives input or data, but it does\n        not validate or incorrectly validates that the input has the\n        properties that are required to process the data safely and\n        correctly."},{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"549d33536acd76c72586183c91c2ca121227dcfd999301a51a15a95aded64ca1","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.217","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.217","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-3665","name":"CVE-2024-3665","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-3665","description":"[en] The Rank Math SEO with AI SEO Tools plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's HowTo and FAQ widgets in all versions up to, and including, 1.0.216 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-04-23"},{"id":"7e009eeffc624f39034176012fc4d5e7ecb1f876","name":"Rank Math SEO with AI SEO Tools <= 1.0.216 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'titleWrapper'","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-with-ai-seo-tools-10216-authenticated-contributor-stored-cross-site-scripting-via-titlewrapper","description":"The Rank Math SEO with AI SEO Tools plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's HowTo and FAQ widgets in all versions up to, and including, 1.0.216 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-04-22"},{"id":"427b2dcfc724e5949c20b1fe3ebb0a7fce723f74","name":"WordPress Rank Math SEO Plugin <= 1.0.216 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/seo-by-rank-math\/vulnerability\/wordpress-rank-math-seo-plugin-1-0-216-authenticated-contributor-stored-cross-site-scripting-via-titlewrapper-vulnerability","description":"<p>WordPress Rank Math SEO Plugin <= 1.0.216 is vulnerable to Cross Site Scripting (XSS)<\/p><p>Software: Rank Math SEO<\/p><p>Link: https:\/\/wordpress.org\/plugins\/seo-by-rank-math\/#developers<\/p><p>Affected Version <= 1.0.216<\/p><p>Fixed in version 1.0.217 <\/p>","date":"2024-04-23"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"5.4","severity":"m","exploitable":"2.3","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"5.4","severity":"medium","av":"network","ac":"low","pr":"low","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"2.3","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"df5168995ca8e8d21193f87747ca16a21330b7e98d0baf37a0f4ea5faec57252","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.218","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.218","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-4335","name":"CVE-2024-4335","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-4335","description":"[en] The Rank Math SEO with AI Best SEO Tools plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the \u2018textAlign\u2019 parameter in versions up to, and including, 1.0.217 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-05-09"},{"id":"8b337fd81dcda990d2e6ee4d5cb008a643122037","name":"Rank Math SEO with AI Best SEO Tools <= 1.0.217 - Authenticated (Contributor+) Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-with-ai-best-seo-tools-10217-authenticated-contributor-stored-cross-site-scripting","description":"The Rank Math SEO with AI Best SEO Tools plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the \u2018textAlign\u2019 parameter in versions up to, and including, 1.0.217 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-05-03"},{"id":"4e6f7ef0649317befcc9332713e4c86f8f47a5de","name":"WordPress Rank Math SEO Plugin <= 1.0.217 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/seo-by-rank-math\/vulnerability\/wordpress-rank-math-seo-with-ai-best-seo-tools-plugin-1-0-217-authenticated-contributor-stored-cross-site-scripting-vulnerability","description":"<p>WordPress Rank Math SEO Plugin <= 1.0.217 is vulnerable to Cross Site Scripting (XSS)<\/p><p>Software: Rank Math SEO<\/p><p>Link: https:\/\/wordpress.org\/plugins\/seo-by-rank-math\/#developers<\/p><p>Affected Version <= 1.0.217<\/p><p>Fixed in version 1.0.218 <\/p>","date":"2024-05-05"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"5.4","severity":"m","exploitable":"2.3","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"5.4","severity":"medium","av":"network","ac":"low","pr":"low","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"2.3","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"9392569f49713b08d6c4d5ee58281f4c3e2d43fa32dcefac770695cd39302e9d","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.219","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.219","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-4617","name":"CVE-2024-4617","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-4617","description":"[en] The Rank Math SEO with AI Best SEO Tools plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the \u2018id\u2019 parameter in versions up to, and including, 1.0.218 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-05-16"},{"id":"03b4d3c5e53197445c42b3795a89895c3bac4e12","name":"WordPress Rank Math SEO Plugin <= 1.0.218 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/seo-by-rank-math\/vulnerability\/wordpress-rank-math-seo-with-ai-best-seo-tools-plugin-1-0-218-authenticated-contributor-stored-cross-site-scripting-vulnerability","description":"<p>WordPress Rank Math SEO Plugin <= 1.0.218 is vulnerable to Cross Site Scripting (XSS)<\/p><p>Software: Rank Math SEO<\/p><p>Link: https:\/\/wordpress.org\/plugins\/seo-by-rank-math\/#developers<\/p><p>Affected Version <= 1.0.218<\/p><p>Fixed in version 1.0.219-beta <\/p>","date":"2024-05-16"},{"id":"01841eb7cb80b21fb8349951e9411bbf44209099","name":"Rank Math SEO with AI Best SEO Tools <= 1.0.218 - Authenticated (Contributor+) Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-with-ai-best-seo-tools-10218-authenticated-contributor-stored-cross-site-scripting","description":"The Rank Math SEO with AI Best SEO Tools plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the \u2018id\u2019 parameter in versions up to, and including, 1.0.218 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-05-15"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"c","c":"l","i":"l","a":"n","score":"6.4","severity":"m","exploitable":"3.1","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:C\/C:L\/I:L\/A:N","score":"6.4","severity":"medium","av":"network","ac":"low","pr":"low","ui":"none","s":"changed","c":"low","i":"low","a":"none","exploitable":"3.1","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"6960e1eab46fe8c825f48f29d467112a7c5c1ec5ce122a884383fbe19a72c72a","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.219","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.219","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-4627","name":"CVE-2024-4627","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-4627","description":"[en] The Rank Math SEO  WordPress plugin before 1.0.219 does not sanitise and escape some of its settings, which could allow users with access to the General Settings (by default admin, however such access can be given to lower roles via the Role Manager feature of the Rank Math SEO  WordPress plugin before 1.0.219) to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).","date":"2024-07-02"},{"id":"e7d31f2433ba228191bfe23261538971f5c5837f","name":"Rank Math SEO <= 1.0.218 - Authenticated (Administrator+) Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-10218-authenticated-administrator-stored-cross-site-scripting","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 1.0.218 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.","date":"2024-06-11"},{"id":"85e5fcb299cce4bcd6f7ab4577d7bfb5be59b459","name":"WordPress Rank Math SEO Plugin < 1.0.219 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/seo-by-rank-math\/vulnerability\/wordpress-rank-math-seo-plugin-1-0-219-authenticated-stored-xss-vulnerability","description":"<p>WordPress Rank Math SEO Plugin < 1.0.219 is vulnerable to Cross Site Scripting (XSS)<\/p><p>Software: Rank Math SEO<\/p><p>Link: https:\/\/wordpress.org\/plugins\/seo-by-rank-math\/#developers<\/p><p>Affected Version < 1.0.219<\/p><p>Fixed in version 1.0.219 <\/p>","date":"2024-07-02"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"5.4","severity":"m","exploitable":"2.3","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"5.4","severity":"medium","av":"network","ac":"low","pr":"low","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"2.3","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}],"ssvc":{"exploitation":"poc","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"d416136d5fdce8821c8f12ab0d32e4767d87d3166fb8baa9cf4b6fa951638880","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.229","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.229","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-9161","name":"CVE-2024-9161","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-9161","description":"[en] The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the 'update_metadata' function in all versions up to, and including, 1.0.228. This makes it possible for unauthenticated attackers to insert new and update existing metadata beginning with 'rank_math', and delete arbitrary existing user metadata and term metadata. Deleting existing usermeta can cause a loss of access to the administrator dashboard for any registered users, including Administrators.","date":"2024-10-05"},{"id":"e5a8ab6dab821faf24970663a5c90d92e3e0adac","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings <= 1.0.228 - Missing Authorization to Unauthenticated User and Term Metadata Insert, Update, and Delete","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-ai-seo-tools-to-dominate-seo-rankings-10228-missing-authorization-to-unauthenticated-user-and-term-metadata-insert-update-and-delete","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the 'update_metadata' function in all versions up to, and including, 1.0.228. This makes it possible for unauthenticated attackers to insert new and update existing metadata beginning with 'rank_math', and delete arbitrary existing user metadata and term metadata. Deleting existing usermeta can cause a loss of access to the administrator dashboard for any registered users, including Administrators.","date":"2024-10-04"},{"id":"21ebc79cff4b62d9cdebb78a210235872f1346cf","name":"WordPress Rank Math SEO Plugin <= 1.0.228 is vulnerable to Broken Access Control","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/seo-by-rank-math\/vulnerability\/wordpress-rank-math-seo-plugin-1-0-228-missing-authorization-to-unauthenticated-user-and-term-metadata-insert-update-and-delete-vulnerability","description":"<p>WordPress Rank Math SEO Plugin <= 1.0.228 is vulnerable to Broken Access Control<\/p><p>Software: Rank Math SEO<\/p><p>Link: https:\/\/wordpress.org\/plugins\/seo-by-rank-math\/#developers<\/p><p>Affected Version <= 1.0.228<\/p><p>Fixed in version 1.0.229 <\/p>","date":"2024-10-07"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:N\/I:L\/A:L","av":"n","ac":"l","pr":"n","ui":"n","s":"u","c":"n","i":"l","a":"l","score":"6.5","severity":"m","exploitable":"3.9","impact":"2.5"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:N\/I:L\/A:L","score":"6.5","severity":"medium","av":"network","ac":"low","pr":"none","ui":"none","s":"unchanged","c":"none","i":"low","a":"low","exploitable":"3.9","impact":"2.5"},"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"79bacc618b980d414447fbef8dc5146aabbf8791a6c0218e1df85eaccf15ee03","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.229","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.229","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-9314","name":"CVE-2024-9314","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-9314","description":"[en] The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.0.228 via deserialization of untrusted input 'set_redirections' function. This makes it possible for authenticated attackers, with Administrator-level access and above, to inject a PHP Object. No known POP chain is present in the vulnerable software. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.","date":"2024-10-05"},{"id":"85b67dfc110dfe28d36f282c170ac477c85cce6f","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings <= 1.0.228 - Authenticated (Administrator+) PHP Object Injection","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-ai-seo-tools-to-dominate-seo-rankings-10228-authenticated-administrator-php-object-injection","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.0.228 via deserialization of untrusted input 'set_redirections' function. This makes it possible for authenticated attackers, with Administrator-level access and above, to inject a PHP Object. No known POP chain is present in the vulnerable software. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.","date":"2024-10-04"},{"id":"1a36902c33586913371965c58049631b1e23b321","name":"WordPress Rank Math SEO Plugin <= 1.0.228 is vulnerable to PHP Object Injection","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/seo-by-rank-math\/vulnerability\/wordpress-rank-math-seo-plugin-1-0-228-authenticated-administrator-php-object-injection-vulnerability","description":"<p>WordPress Rank Math SEO Plugin <= 1.0.228 is vulnerable to PHP Object Injection<\/p><p>Software: Rank Math SEO<\/p><p>Link: https:\/\/wordpress.org\/plugins\/seo-by-rank-math\/#developers<\/p><p>Affected Version <= 1.0.228<\/p><p>Fixed in version 1.0.229 <\/p>","date":"2024-10-07"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:H\/A:H","av":"n","ac":"l","pr":"h","ui":"n","s":"u","c":"h","i":"h","a":"h","score":"7.2","severity":"h","exploitable":"1.2","impact":"5.9"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:H\/A:H","score":"7.2","severity":"high","av":"network","ac":"low","pr":"high","ui":"none","s":"unchanged","c":"high","i":"high","a":"high","exploitable":"1.2","impact":"5.9"},"cwe":[{"cwe":"CWE-502","name":"Deserialization of Untrusted Data","description":"The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"total","kev":false,"kev_date":null}}},{"uuid":"588558faf46163d837310ce29ead60f2f85e8747d73d9f236624103299fda304","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.232","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.232","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-11620","name":"CVE-2024-11620","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-11620","description":"[en] Improper Control of Generation of Code ('Code Injection') vulnerability in Rank Math SEO Rank Math SEO seo-by-rank-math allows Code Injection.This issue affects Rank Math SEO: from n\/a through <= 1.0.231.","date":"2024-11-28"},{"id":"b4fad49c1e3f8575ecf2dc90263ab335d935a7ea","name":"WordPress Rank Math SEO Plugin <= 1.0.231 is vulnerable to Remote Code Execution (RCE)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/seo-by-rank-math\/vulnerability\/wordpress-rank-math-seo-plugin-1-0-231-arbitrary-htaccess-overwrite-to-remote-code-execution-rce-vulnerability","description":"<p>WordPress Rank Math SEO Plugin <= 1.0.231 is vulnerable to Remote Code Execution (RCE)<\/p><p>Software: Rank Math SEO<\/p><p>Link: https:\/\/wordpress.org\/plugins\/seo-by-rank-math\/#developers<\/p><p>Affected Version <= 1.0.231<\/p><p>Fixed in version 1.0.232 <\/p>","date":"2024-11-22"},{"id":"7237f785d8654bc236d80a62692ab44d0d0bf807","name":"Rank Math SEO <= 1.0.231 - .htaccess File Manipulation to Remote Code Execution","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-10231-htaccess-file-manipulation-to-remote-code-execution","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.0.231. This makes it possible for authenticated attackers, with Administrator-level access and above, to execute code on the server.","date":"2024-11-22"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:H\/A:H","av":"n","ac":"l","pr":"h","ui":"n","s":"u","c":"h","i":"h","a":"h","score":"7.2","severity":"h","exploitable":"0.0","impact":"0.0"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:H\/A:H","score":"7.2","severity":"high","av":"network","ac":"low","pr":"high","ui":"none","s":"unchanged","c":"high","i":"high","a":"high","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-94","name":"Improper Control of Generation of Code ('Code Injection')","description":"The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment."}],"ssvc":{"exploitation":"poc","automatable":"no","technical_impact":"total","kev":false,"kev_date":null}}},{"uuid":"ddd24a5f7db32e0e50a9d422e4f860d912bf9c8c5e158100721225b9069030d2","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.236","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.236","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-13227","name":"CVE-2024-13227","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-13227","description":"[en] The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Rank Math API in all versions up to, and including, 1.0.235 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2025-02-13"},{"id":"4b983d8d4ad606be58f455bdbf4564578c77480a","name":"WordPress Rank Math SEO Plugin <= 1.0.235 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/seo-by-rank-math\/vulnerability\/wordpress-rank-math-seo-plugin-1-0-235-authenticated-contributor-stored-cross-site-scripting-via-rank-math-api-vulnerability","description":"<p>WordPress Rank Math SEO Plugin <= 1.0.235 is vulnerable to Cross Site Scripting (XSS)<\/p><p>Software: Rank Math SEO<\/p><p>Fixed in version 1.0.236 <\/p><p>Affected Version <= 1.0.235<\/p><p>CVE: CVE-2024-13227<\/p>","date":"2025-02-12"},{"id":"a7ae32ea6a48ca08b3db950cb77f2839410926dd","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings <= 1.0.235 - Authenticated (Contributor+) Stored Cross-Site Scripting via Rank Math API","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-ai-seo-tools-to-dominate-seo-rankings-10235-authenticated-contributor-stored-cross-site-scripting-via-rank-math-api","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Rank Math API in all versions up to, and including, 1.0.235 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2025-02-12"},{"id":"EUVD-2024-51446","name":"EUVD-2024-51446","link":"https:\/\/euvd.enisa.europa.eu\/enisa\/EUVD-2024-51446","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Rank Math API in all versions up to, and including, 1.0.235 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2025-02-13"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"c","c":"l","i":"l","a":"n","score":"6.4","severity":"m","exploitable":"2.3","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:C\/C:L\/I:L\/A:N","score":"6.4","severity":"medium","av":"network","ac":"low","pr":"low","ui":"none","s":"changed","c":"low","i":"low","a":"none","exploitable":"2.3","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}],"ssvc":{"exploitation":"none","automatable":"yes","technical_impact":"partial","kev":false,"kev_date":null},"epss":"0.001"}},{"uuid":"81252bfbc2ecf26ed6ebb4f18b0ca7a872c9992727e3926a18f58512bd525932","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.236","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.236","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-13229","name":"CVE-2024-13229","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-13229","description":"[en] The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the update_metadata() function in all versions up to, and including, 1.0.235. This makes it possible for authenticated attackers, with Contributor-level access and above, to delete any schema metadata assigned to any post.","date":"2025-02-13"},{"id":"fa9e342aa1c738bd1ee8d92a39a6b6ba6eb5ae29","name":"Rank Math SEO <= 1.0.235 - Missing Authorization to Authenticated (Contributor+) Arbitrary Schema Deletion","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-10235-missing-authorization-to-authenticated-contributor-arbitrary-schema-deletion","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the update_metadata() function in all versions up to, and including, 1.0.235. This makes it possible for authenticated attackers, with Contributor-level access and above, to delete any schema metadata assigned to any post.","date":"2025-02-12"},{"id":"EUVD-2024-51447","name":"EUVD-2024-51447","link":"https:\/\/euvd.enisa.europa.eu\/enisa\/EUVD-2024-51447","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the update_metadata() function in all versions up to, and including, 1.0.235. This makes it possible for authenticated attackers, with Contributor-level access and above, to delete any schema metadata assigned to any post.","date":"2025-02-13"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"u","c":"n","i":"l","a":"n","score":"4.3","severity":"m","exploitable":"2.8","impact":"1.4"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:L\/A:N","score":"4.3","severity":"medium","av":"network","ac":"low","pr":"low","ui":"none","s":"unchanged","c":"none","i":"low","a":"none","exploitable":"2.8","impact":"1.4"},"cwe":[{"cwe":"CWE-284","name":"Improper Access Control","description":"The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null},"epss":"0.001"}},{"uuid":"4b029ed9f0d76a76c00b1f1ffe27beca076f1344f95803ddd276e0fca87f4a4f","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.253","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.253","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2025-64351","name":"CVE-2025-64351","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2025-64351","description":"[en] Insertion of Sensitive Information Into Sent Data vulnerability in Rank Math SEO Rank Math SEO seo-by-rank-math allows Retrieve Embedded Sensitive Data.This issue affects Rank Math SEO: from n\/a through <= 1.0.252.1.","date":"2025-10-31"},{"id":"eb9d4f1e411d429a985e3954b03950ec9da0a344","name":"Rank Math SEO <= 1.0.252.1 - Authenticated (Subscriber+) Information Exposure","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-102521-authenticated-subscriber-information-exposure","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.0.252.1. This makes it possible for authenticated attackers, with Subscriber-level access and above, to extract sensitive user or configuration data.","date":"2025-09-11"},{"id":"EUVD-2025-37341","name":"EUVD-2025-37341","link":"https:\/\/euvd.enisa.europa.eu\/enisa\/EUVD-2025-37341","description":"Insertion of Sensitive Information Into Sent Data vulnerability in Rank Math SEO Rank Math SEO seo-by-rank-math allows Retrieve Embedded Sensitive Data.This issue affects Rank Math SEO: from n\/a through <= 1.0.252.1.","date":"2025-10-31"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:L\/I:N\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"u","c":"l","i":"n","a":"n","score":"4.3","severity":"m","exploitable":"2.8","impact":"1.4"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:L\/I:N\/A:N","score":"4.3","severity":"medium","av":"network","ac":"low","pr":"low","ui":"none","s":"unchanged","c":"low","i":"none","a":"none","exploitable":"2.8","impact":"1.4"},"cwe":[{"cwe":"CWE-201","name":"Insertion of Sensitive Information Into Sent Data","description":"The code transmits data to another actor, but a portion of the data includes sensitive information that should not be accessible to that actor."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"c78d537f8952dca16476dc6388c591bb407b0ae80d0c5e8916fbad03ed4a7f21","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.253","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.253","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2025-64350","name":"CVE-2025-64350","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2025-64350","description":"[en] Missing Authorization vulnerability in Rank Math SEO Rank Math SEO seo-by-rank-math allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Rank Math SEO: from n\/a through <= 1.0.252.1.","date":"2025-10-31"},{"id":"828f772cb4ba6e7bfd03d40d3e3ece8160b4390b","name":"Rank Math SEO <= 1.0.252.1 - Missing Authorization","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-102521-missing-authorization","description":"The Rank Math SEO plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the track() function in versions up to, and including, 1.0.252.1. This makes it possible for authenticated attackers, with author-level access and above, to perform an unauthorized action.","date":"2025-09-11"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:N\/I:L\/A:L","av":"n","ac":"l","pr":"h","ui":"n","s":"u","c":"n","i":"l","a":"l","score":"3.8","severity":"l","exploitable":"2.0","impact":"1.4"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:N\/I:L\/A:L","score":"3.8","severity":"low","av":"network","ac":"low","pr":"high","ui":"none","s":"unchanged","c":"none","i":"low","a":"low","exploitable":"2.0","impact":"1.4"},"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"694d44e0ce495c17250d9ca758551d1aa0a80a91c388e6d936b6ce2d98374cbe","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.271.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.271.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2025-12714","name":"CVE-2025-12714","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2025-12714","description":"[en] The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the update_site_editor_homepage function in all versions up to, and including, 1.0.271. This makes it possible for unauthenticated attackers to modify several plugin settings including homepage title, meta description, breadcrumbs label, and social media metadata, which can have severe impact on SEO rankings and display malicious content across all site pages where breadcrumbs are used.","date":"2026-05-29"},{"id":"3e61ea12dbe736a6874c0ff818f47cb0517273ba","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings <= 1.0.271 - Missing Authorization to Unauthenticated Homepage Settings Modification","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-ai-seo-tools-to-dominate-seo-rankings-10271-missing-authorization-to-unauthenticated-homepage-settings-modification","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the update_site_editor_homepage function in all versions up to, and including, 1.0.271. This makes it possible for unauthenticated attackers to modify several plugin settings including homepage title, meta description, breadcrumbs label, and social media metadata, which can have severe impact on SEO rankings and display malicious content across all site pages where breadcrumbs are used.","date":"2026-05-28"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:N\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"n","s":"u","c":"n","i":"l","a":"n","score":"5.3","severity":"m","exploitable":"0.0","impact":"0.0"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:N\/I:L\/A:N","score":"5.3","severity":"medium","av":"network","ac":"low","pr":"none","ui":"none","s":"unchanged","c":"none","i":"low","a":"none","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}],"ssvc":{"exploitation":"none","automatable":"yes","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"6ecffcd4832761e52c8ceab15e3afd0df664e2c36ed2b319f036ed991f99aeb8","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.271.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.271.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-34892","name":"CVE-2026-34892","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-34892","description":"[en] Subscriber Broken Access Control in Rank Math SEO <= 1.0.271 versions.","date":"2026-06-15"},{"id":"31578c6402b09fb83cafabcc3eec1f1fa2b232a9","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings <= 1.0.271 - Missing Authorization","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/id\/9d7838c8-938f-487a-9120-4cb13f0e6f6b","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 1.0.271. This makes it possible for authenticated attackers, with subscriber-level access and above, to perform an unauthorized action.","date":"2026-06-03"},{"id":"fbc1148583684549b90f954512b03785319bd78b","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings &lt;= 1.0.271 - Missing Authorization","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-ai-seo-tools-to-dominate-seo-rankings-10271-missing-authorization","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 1.0.271. This makes it possible for authenticated attackers, with subscriber-level access and above, to perform an unauthorized action.","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:H\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"u","c":"n","i":"h","a":"n","score":"6.5","severity":"m","exploitable":"0.0","impact":"0.0"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:H\/A:N","score":"6.5","severity":"medium","av":"network","ac":"low","pr":"low","ui":"none","s":"unchanged","c":"none","i":"high","a":"none","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"6db722383512178d1d31314ee090388368e14df9e7f58b806b61bb0808d73978","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.275","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.275","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-66702","name":"CVE-2026-66702","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-66702","description":"[en] Unauthenticated Cross Site Scripting (XSS) in Rank Math SEO <= 1.0.274.1 versions.","date":"2026-08-06"},{"id":"97af4ef867535a85b17123409d1ca3acf7256256","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings <= 1.0.274.1 - Unauthenticated Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-ai-seo-tools-to-dominate-seo-rankings-102741-unauthenticated-stored-cross-site-scripting","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1.0.274.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2026-07-31"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:L","av":"n","ac":"l","pr":"n","ui":"r","s":"c","c":"l","i":"l","a":"l","score":"7.1","severity":"h","exploitable":"0.0","impact":"0.0"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:L","score":"7.1","severity":"high","av":"network","ac":"low","pr":"none","ui":"required","s":"changed","c":"low","i":"low","a":"low","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"0c3a935349c8f044f4a87d321b76f074cb26b7961a0926392edd69b189beb559","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.277","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.277","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-81757","name":"CVE-2026-81757","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-81757","description":"[en] Author Remote Code Execution (RCE) in Rank Math SEO <= 1.0.276 versions.","date":"2026-08-28"},{"id":"52e97b07080c841de418356119a3fdc2778e1be6","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings <= 1.0.276 - Authenticated (Author+) Remote Code Execution","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-ai-seo-tools-to-dominate-seo-rankings-10276-authenticated-author-remote-code-execution","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.0.276. This is due to insufficient validation of user supplied input before it is executed. This makes it possible for authenticated attackers, with author-level access and above, to execute arbitrary code on the server.","date":"2026-08-29"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:H\/A:H","av":"n","ac":"l","pr":"h","ui":"n","s":"u","c":"h","i":"h","a":"h","score":"7.2","severity":"h","exploitable":"0.0","impact":"0.0"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:H\/A:H","score":"7.2","severity":"high","av":"network","ac":"low","pr":"high","ui":"none","s":"unchanged","c":"high","i":"high","a":"high","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-502","name":"Deserialization of Untrusted Data","description":"The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"total","kev":false,"kev_date":null}}},{"uuid":"7336240bfd3317793eac4d48813c11980b18874c55dffb96713eb4f17a0cec90","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.277","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.277","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-77786","name":"CVE-2026-77786","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-77786","description":"[en] The Rank Math SEO  WordPress plugin before 1.0.277 does not check that the user requesting an automated SEO fix holds the capability WordPress itself requires for the settings being changed, allowing users with the Editor role to modify site-wide core WordPress settings that are reserved to administrators.","date":"2026-08-29"},{"id":"3d1be91c98a892d9ad727a9ca16581e570e0e5f9","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings < 1.0.277 - Missing Authorization","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-ai-seo-tools-to-dominate-seo-rankings-10277-missing-authorization","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized access in all versions up to 1.0.277. This is due to a missing capability check on a function. This makes it possible for authenticated attackers, with editor-level access and above, to perform an unauthorized action.","date":"2026-08-27"}],"impact":{"cwe":[{"cwe":"CWE-863","name":"Incorrect Authorization","description":"The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"7f341aa6feb5c9680e9c0c0859ce68d5fc9baeb70c585caa5425fefb5b6bc691","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.277.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.277.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-77782","name":"CVE-2026-77782","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-77782","description":"[en] The Rank Math SEO  WordPress plugin before 1.0.277.1 does not check whether a post is password protected before using its content to build publicly generated SEO metadata, allowing unauthenticated users to read the content of password-protected posts.","date":"2026-09-02"},{"id":"6ceb6b1fa2aa27796f44a9c5ba2ebd9530045c54","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings < 1.0.277.1 - Unauthenticated Password-Protected Post Content Disclosure","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-ai-seo-tools-to-dominate-seo-rankings-102771-unauthenticated-password-protected-post-content-disclosure","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to 1.0.277.1. This is due to missing post_password_required() checks before using post content to generate SEO metadata. This makes it possible for unauthenticated attackers to read the content of password-protected posts via publicly generated SEO metadata such as schema blocks, meta descriptions, and Open Graph data.","date":"2026-09-03"}],"impact":{"cwe":[{"cwe":"CWE-200","name":"Exposure of Sensitive Information to an Unauthorized Actor","description":"The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"b8765bb6ab97c8a05d0a37e398528d295cf7da12e876359f48292a7076d6557d","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.277","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.277","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-77788","name":"CVE-2026-77788","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-77788","description":"[en] The Rank Math SEO  WordPress plugin before 1.0.277 does not verify that the metadata row being updated belongs to the object the user was authorised against, allowing users with the Author role and above to overwrite arbitrary post and user metadata, including that belonging to higher-privileged users.","date":"2026-09-02"},{"id":"dc63ec5c95334469031ef1010719f57229bb51a2","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings < 1.0.277 - Missing Authorization to Authenticated (Author+) Arbitrary Post\/User Meta Overwrite","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-ai-seo-tools-to-dominate-seo-rankings-10277-missing-authorization-to-authenticated-author-arbitrary-postuser-meta-overwrite","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to 1.0.277 (exclusive). This makes it possible for authenticated attackers, with Author-level access and above, to overwrite post and user metadata.","date":"2026-09-03"}],"impact":{"cwe":[{"cwe":"CWE-639","name":"Authorization Bypass Through User-Controlled Key","description":"The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"fb099eaceb6d5aec18ebbd50825fb72b91f81f65df1d2783aa0851f08df06467","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.277","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.277","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-77787","name":"CVE-2026-77787","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-77787","description":"[en] The Rank Math SEO  WordPress plugin before 1.0.277 does not perform a capability check when bulk metadata updates target taxonomy terms, and reuses the supplied object identifier across object types, allowing users with the Author role and above to modify the SEO metadata of terms they cannot edit and to overwrite the titles of posts belonging to other users.","date":"2026-09-02"},{"id":"8f63a276635692f703cb35df9b4de11035bcb534","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings < 1.0.277 - Missing Authorization","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-ai-seo-tools-to-dominate-seo-rankings-10277-missing-authorization-2","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized access in all versions up to 1.0.277. This is due to a missing capability check on a function. This makes it possible for authenticated attackers, with author-level access and above, to perform an unauthorized action.","date":"2026-09-03"}],"impact":{"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"a40153875a1c267b2c00eedf47bb75a20bda16579a52f954524f34e883c840cd","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.277","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.277","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-77785","name":"CVE-2026-77785","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-77785","description":"[en] The Rank Math SEO  WordPress plugin before 1.0.277 does not verify that the requesting user is permitted to read the specific post referenced in a request before returning its content and SEO metadata, allowing users with the Author role and above to read the title, body and metadata of other users' non-public posts.","date":"2026-09-02"},{"id":"2565b92e49efd10caba04d8ebe0ef88e0ee32062","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings < 1.0.277 - Authenticated (Author+) Information Exposure","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-ai-seo-tools-to-dominate-seo-rankings-10277-authenticated-author-information-exposure","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to 1.0.277. This makes it possible for authenticated attackers, with author-level access and above, to extract sensitive user or configuration data.","date":"2026-09-03"}],"impact":{"cwe":[{"cwe":"CWE-639","name":"Authorization Bypass Through User-Controlled Key","description":"The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"2109ded8a87b7320023bd4e64946c283bcecab7da77ddabfe6ec3c4ea8d51752","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.277","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.277","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-77784","name":"CVE-2026-77784","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-77784","description":"[en] The Rank Math SEO  WordPress plugin before 1.0.277 does not verify that a user is allowed to edit the object being modified before updating its SEO indexing metadata, allowing users with the Author role and above to alter that metadata on content, taxonomy terms and user profiles they do not own, and to remove other users' content from the site's sitemap and search engine index.","date":"2026-09-02"},{"id":"f4f47125b124516c8a52670cb27d2fc547d75092","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings < 1.0.277 - Missing Authorization to Authenticated (Author+) SEO Object Updates","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-ai-seo-tools-to-dominate-seo-rankings-10277-missing-authorization-to-authenticated-author-seo-object-updates","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to 1.0.277 (exclusive). This makes it possible for authenticated attackers, with Author-level access and above, to update SEO objects.","date":"2026-09-02"}],"impact":{"cwe":[{"cwe":"CWE-639","name":"Authorization Bypass Through User-Controlled Key","description":"The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"8535dcb8e8df6d9262ab7a21b9c544a9e02ac3ea83e19b412fb6c7077c66ff4c","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings [seo-by-rank-math] < 1.0.277","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.0.277","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-77783","name":"CVE-2026-77783","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-77783","description":"[en] The Rank Math SEO  WordPress plugin before 1.0.277 does not verify that the post whose schema it renders on the front end is publicly viewable, allowing unauthenticated visitors to disclose the schema and associated content of draft, pending, private, scheduled and password-protected posts.","date":"2026-09-02"},{"id":"0afb8f6e9c8cb16c18274cf9e21ac5cfaba5670f","name":"Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings < 1.0.277 - Unauthenticated Information Exposure","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/seo-by-rank-math\/rank-math-seo-ai-seo-tools-to-dominate-seo-rankings-10277-unauthenticated-information-exposure","description":"The Rank Math SEO \u2013 AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to 1.0.277. This makes it possible for unauthenticated attackers to extract sensitive user or configuration data.","date":"2026-09-03"}],"impact":{"cwe":[{"cwe":"CWE-639","name":"Authorization Bypass Through User-Controlled Key","description":"The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}}]},"updated":"1789030892"}