CVE · High

CVE-2024-3213 — Relevanssi – A Better Search [relevanssi] < 4.22.2

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-3213 Relevanssi – A Better Search [relevanssi] < 4.22.2 Missing Authorization High 8.2 < 4.22.2 4.22.2 2024-04-04

CVE-2024-3213

The Relevanssi search plugin versions before 4.22.2 contain a broken access control flaw that allows unauthenticated users to perform actions intended only for higher-privileged accounts due to missing authorization checks and nonce validation. This vulnerability was discovered by Thura Moe Myint and has been resolved in version 4.22.2 and later.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.