WordPress · Smart Seo Tool · CVE-2021-24976
**Name of the Vulnerable Software and Affected Versions**
Smart SEO Tool WordPress plugin versions prior to 3.0.6
**Description**
The issue is related to a Reflected Cross-Site Scripting problem. It occurs when the TDK optimisation setting is enabled and the search parameter is not properly sanitised and escaped before being outputted back in an attribute.
**Recommendations**
For versions prior to 3.0.6, update to version 3.0.6 or later to resolve the issue.