plugin

Really Simple Ssl Pro Multisite Vulnerabilities

1 known security issue reported for the Really Simple Ssl Pro Multisite WordPress plugin. Most recent disclosed Nov 14, 2024.

1 critical

Running Really Simple Ssl Pro Multisite on your site? Check whether your installed version is affected.

Scan your site free

Really Simple Security (Free, Pro, and Pro Multisite) 9.0.0 - 9.1.1.1 - Authentication Bypass

critical

The Really Simple Security (Free, Pro, and Pro Multisite) plugins for WordPress are vulnerable to authentication bypass in versions 9.0.0 to 9.1.1.1. This is due to improper user check error handling in the two-factor REST API actions with the 'check_login_and_get_user' function. This makes it possible for unauthentica...

CVSS:
9.8
Affected:
9.0.0 – 9.1.1.1
Fixed in:
9.1.2
Disclosed:
Nov 14, 2024

CVE-2024-10924 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database