CVE · Medium

CVE-2021-24187 — SEO Redirection Plugin – 301 Redirect Manager [seo-redirection] < 6.4

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2021-24187 SEO Redirection Plugin – 301 Redirect Manager [seo-redirection] < 6.4 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Medium 5.4 < 6.4 6.4 2021-03-16

CVE-2021-24187

The settings page of the SEO Redirection Plugin – 301 Redirect Manager before version 6.4 contains a reflected cross-site scripting vulnerability due to inadequate sanitization of user-supplied data before rendering it within HTML attributes. An attacker could craft a malicious link containing injected script code that executes in a user's browser when the settings page is accessed. The vulnerability was patched in version 6.4, released in April 2021.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.