WordPress security by component
404 Solution
Plugin description
404 Solution is a WordPress component with 6 published CVE records in this archive. The latest tracked vulnerability was published Dec 13, 2025; the highest CVE/CNA score is 7.6.
Plugin slug:
404-solutionLatest vulnerability
CVE-2025-14477: 404 Solution: SQL injection
404 Solution is affected by SQL injection. Exploitation requires at least administrator-level access. A successful request can alter database queries and expose or modify WordPress data.
| Safe version |
|
||
|---|---|---|---|
| Dec 13, 2025 |
CVE-2025-14477
404 Solution: SQL injection
404 Solution is affected by SQL injection. Exploitation requires at least administrator-level access. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVE4.9
NVDPending
|
| Nov 20, 2024 |
CVE-2024-11277
404 Solution: Cross-site scripting
404 Solution is affected by cross-site scripting. The vulnerable path is reachable without authentication. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE6.1
NVDPending
|
| Nov 16, 2024 |
CVE-2024-11094
404 Solution: Sensitive information exposure
404 Solution is affected by sensitive information exposure. The vulnerable path is reachable without authentication. Successful exploitation can disclose data that should not be available to the caller.
|
See mitigation notes |
CVE5.3
NVDPending
|
| Mar 11, 2024 |
CVE-2024-1068
404 Solution: SQL injection
404 Solution is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVE7.2
NVDPending
|
| Jan 05, 2024 |
CVE-2023-52146
404 Solution: A security weakness
404 Solution is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE5.3
NVD5.3
|
| Dec 28, 2023 |
CVE-2023-50848
404 Solution: SQL injection
404 Solution is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVE7.6
NVD7.2
|