cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2022-40695,https://securityvulnerability.io/vulnerability/CVE-2022-40695,WordPress SEO Redirection Plugin plugin <= 8.9 - Multiple Cross-Site Scripting (CSRF) vulnerabilities,Multiple Cross-Site Scripting (CSRF) vulnerabilities in SEO Redirection Plugin plugin <= 8.9 on WordPress.,Wordpress,Seo Redirection Plugin – 301 Redirect Manager (WordPress Plugin),5.4,MEDIUM,0.0010100000072270632,false,,false,false,false,,false,false,2022-11-18T23:15:00.000Z,0 CVE-2022-38704,https://securityvulnerability.io/vulnerability/CVE-2022-38704,WordPress SEO Redirection plugin <= 8.9 - Cross-Site Request Forgery (CSRF) vulnerability,"Cross-Site Request Forgery (CSRF) vulnerability in SEO Redirection plugin <= 8.9 at WordPress, leading to deletion of 404 errors and redirection history.",Wordpress,Seo Redirection Plugin – 301 Redirect Manager (WordPress Plugin),5.4,MEDIUM,0.0005200000014156103,false,,false,false,false,,false,false,2022-09-23T00:00:00.000Z,0 CVE-2021-24847,https://securityvulnerability.io/vulnerability/CVE-2021-24847,SEO Redirection < 8.2 - Subscriber+ SQL Injection,"The importFromRedirection AJAX action of the SEO Redirection Plugin – 301 Redirect Manager WordPress plugin before 8.2, available to any authenticated user, does not properly sanitise the offset parameter before using it in a SQL statement, leading an SQL injection when the redirection plugin is also installed",Wordpress,Seo Redirection Plugin – 301 Redirect Manager,8.8,HIGH,0.001120000029914081,false,,false,false,false,,false,false,2021-11-17T10:15:51.000Z,0 CVE-2021-24327,https://securityvulnerability.io/vulnerability/CVE-2021-24327,SEO Redirection < 6.4 - Authenticated Stored Cross-Site Scripting (XSS),"The SEO Redirection Plugin – 301 Redirect Manager WordPress plugin before 6.4 did not sanitise the Redirect From and Redirect To fields when creating a new redirect in the dashboard, allowing high privilege users (even with the unfiltered_html disabled) to set XSS payloads",Wordpress,Seo Redirection Plugin – 301 Redirect Manager,4.8,MEDIUM,0.000539999979082495,false,,false,false,false,,false,false,2021-05-17T16:48:54.000Z,0 CVE-2021-24187,https://securityvulnerability.io/vulnerability/CVE-2021-24187,SEO Redirection < 6.4 - Authenticated Reflected Cross-Site Scripting (XSS),The setting page of the SEO Redirection Plugin - 301 Redirect Manager WordPress plugin before 6.4 is vulnerable to reflected Cross-Site Scripting (XSS) as user input is not properly sanitised before being output in an attribute.,Wordpress,Seo Redirection Plugin - 301 Redirect Manager,5.4,MEDIUM,0.0007399999885819852,false,,false,false,false,,false,false,2021-04-05T18:27:45.000Z,0