Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

SEO Plugin by Squirrly SEO — Vulnerabilities & Security Advisories 17

All 17 CVE vulnerabilities found in SEO Plugin by Squirrly SEO, with AI-generated Chinese analysis, references, and POCs.

This page aggregates vulnerability data for the SEO Plugin by Squirrly SEO, identifying it as a WordPress plugin that historically exhibited weaknesses related to privilege escalation and improper input validation. The collection includes all published security advisories for this product, covering the period from its initial release through recent updates, focusing on issues such as cross-site scripting and unauthorized access. Readers can use this page to track the vendor's security posture over time, understand the specific weakness classes that have affected this plugin, and review the complete vulnerability history to assess risk or verify remediation. The entries provide a structured view of how the product evolved regarding security flaws, allowing technical teams to correlate historical bugs with current versions. This aggregation supports audit requirements by offering a transparent log of disclosed issues without listing individual CVE identifiers in the introduction. The scope remains limited to the Squirrly SEO product family, ensuring that the data is specific and actionable for developers and security analysts managing WordPress environments.

Vendor: Unknown

CVE ID Title CVSS Severity Published
CVE-2026-94076 WordPress SEO Plugin by Squirrly SEO plugin <= 14.2.5 - PHP Object Injection vulnerability CWE-502 8.8 High 2026-09-30
CVE-2026-66614 WordPress SEO Plugin by Squirrly SEO plugin <= 14.2.2 - Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High 2026-08-20
CVE-2026-66664 WordPress SEO plugin by Squirrly SEO plugin <= 14.2.0 - Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High 2026-08-06
CVE-2026-52714 WordPress SEO Plugin by Squirrly SEO plugin <= 12.4.16 - Broken Access Control vulnerability CWE-862 7.5 Medium 2026-06-16
CVE-2026-7624 SEO Plugin by Squirrly SEO <= 12.4.16 - Missing Authorization to Authenticated (Contributor+) Privileged Cloud API Operations CWE-862 4.3 Medium 2026-06-06
CVE-2025-14342 SEO Plugin by Squirrly SEO <= 12.4.14 - Missing Authorization to Authenticated (Subscriber+) Cloud Service Disconnection CWE-862 4.3 Medium 2026-02-19
CVE-2025-22783 WordPress SEO Plugin by Squirrly SEO plugin <= 12.4.03 - SQL Injection vulnerability CWE-89 8.5 High 2025-03-27
CVE-2025-1768 SEO Plugin by Squirrly SEO <= 12.4.05 - Authenticated (Subscriber+) SQL Injection via search Parameter CWE-89 6.5 Medium 2025-03-07
CVE-2025-24654 WordPress Squirrly SEO plugin <= 12.4.07 - Broken Access Control vulnerability CWE-862 7.1 High 2025-03-03
CVE-2024-10515 SEO Plugin by Squirrly SEO < 12.3.21 - Editor+ Stored XSS 6.1AI Medium AI 2024-11-20
CVE-2024-43286 WordPress Squirrly SEO plugin <= 12.3.19 - SQL Injection vulnerability CWE-89 8.5 High 2024-08-18
CVE-2024-6497 SEO Plugin by Squirrly SEO <= 12.3.19 - Authenticated (Contributor+) SQL Injection via url Parameter CWE-89 8.8 High 2024-07-20
CVE-2024-29790 WordPress Squirrly SEO plugin <= 12.3.16 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High 2024-03-27
CVE-2022-44626 WordPress Squirrly SEO (Peaks) plugin <= 12.1.20 - Broken Access Control vulnerability CWE-862 6.3 Medium 2024-03-25
CVE-2024-0597 SEO Plugin by Squirrly SEO <= 12.3.15 - Authenticated(Administrator+) Stored Cross-Site Scripting via plugin settings CWE-79 4.4 Medium 2024-02-05
CVE-2022-45065 WordPress SEO Plugin by Squirrly SEO Plugin <= 12.1.20 is vulnerable to Cross Site Scripting (XSS) CWE-79 7.1 High 2023-05-08
CVE-2021-25019 SEO Plugin by Squirrly SEO < 11.1.12 - Reflected Cross-Site Scripting CWE-79 6.1 - 2022-03-21

All 17 known CVE vulnerabilities affecting SEO Plugin by Squirrly SEO with full Chinese analysis, references, and POCs where available.