PT-2025-41847 · WordPress · Simple Seo

Krugov Artyom

·

Published

2025-10-14

·

Updated

2025-10-14

·

CVE-2025-10357

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Simple SEO WordPress plugin versions prior to 2.0.32
Description The software does not properly sanitize and escape parameters when outputting them on the page. This could allow users with a contributor role or higher to perform Cross-Site Scripting attacks.
Recommendations Update to version 2.0.32 or later.

Exploit

Fix

Related Identifiers

CVE-2025-10357

Affected Products

Simple Seo