Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4cg6-5xq4-m2fc

Опубликовано: 30 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

The Search Atlas SEO WordPress plugin before 2.6.12 does not perform a capability or nonce check in one of its AJAX handlers, allowing any authenticated user such as a Subscriber to invoke the site's Google Indexing API integration, submitting or removing the site's URLs from Google's index and consuming its indexing quota.

The Search Atlas SEO WordPress plugin before 2.6.12 does not perform a capability or nonce check in one of its AJAX handlers, allowing any authenticated user such as a Subscriber to invoke the site's Google Indexing API integration, submitting or removing the site's URLs from Google's index and consuming its indexing quota.

EPSS

Процентиль: 7%
0.00177
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 5.4
nvd
около 2 месяцев назад

The Search Atlas SEO WordPress plugin before 2.6.12 does not perform a capability or nonce check in one of its AJAX handlers, allowing any authenticated user such as a Subscriber to invoke the site's Google Indexing API integration, submitting or removing the site's URLs from Google's index and consuming its indexing quota.

EPSS

Процентиль: 7%
0.00177
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-862