Vulnerabilities
Vulnerable Software
Updraftplus:  >> Wp-Optimize  Security Vulnerabilities
The WP-Optimize WordPress plugin before 4.2.0 does not properly escape user input when checking image compression statuses, which could allow users with the administrator role to conduct SQL Injection attacks in the context of Multi-Site WordPress configurations.
CVSS Score
4.1
EPSS Score
0.0
Published
2025-06-02
The WP-Optimize WordPress plugin before 3.2.13, SrbTransLatin WordPress plugin before 2.4.1 use a third-party library that removes the escaping on some HTML characters, leading to a cross-site scripting vulnerability.
CVSS Score
6.1
EPSS Score
0.162
Published
2023-07-10


Contact Us

Shodan ® - All rights reserved