plugin

Imageseo Vulnerabilities

2 known security issues reported for the Imageseo WordPress plugin. Most recent disclosed Jul 23, 2024.

2 medium

Running Imageseo on your site? Check whether your installed version is affected.

Scan your site free

Optimize Images ALT Text (alt tag) & names for SEO using AI <= 3.1.1 - Unauthenticated Full Path Disclosure

medium

The Optimize Images ALT Text (alt tag) & names for SEO using AI plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 3.1.1. This is due the plugin utilizing cocur and not preventing direct access to the generate-default.php file. This makes it possible for unauthenticated att...

CVSS:
5.3
Affected:
up to 3.1.1
Fixed in:
3.1.2
Disclosed:
Jul 23, 2024

CVE-2024-6571 on NVD →

Optimize images ALT Text <= 2.0.7 - Cross-Site Request Forgery

medium

The Optimize images ALT Text plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.0.7. This is due to missing or incorrect nonce validation on the save function used during settings update. This makes it possible for unauthenticated attackers to change plugin settings, vi...

CVSS:
4.3
Affected:
up to 2.0.7
Fixed in:
2.0.8
Disclosed:
Dec 28, 2022

CVE-2022-4548 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database