← WordPress Vulnerabilities
WordPress security by component

Solid Security

Solid Security is a WordPress component with 7 published CVE records in this archive. The latest tracked vulnerability was published Jun 21, 2024; the highest CVE/CNA score is 7.5.

Plugin slug: better-wp-security

CVE-2022-44593: Solid Security: A security weakness

Solid Security is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.

PublishedJun 21, 2024
Safe version guidanceSee mitigation notes
Safe version
Jun 21, 2024 CVE-2022-44593
Solid Security: A security weakness
Solid Security is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE3.7
NVD5.3
Dec 29, 2023 CVE-2023-28786
Solid Security – Password, Two Factor Authentication, and Brute Force Protection: An open redirect
Solid Security – Password, Two Factor Authentication, and Brute Force Protection is affected by an open redirect. Exposure depends on how the affected operation is made reachable by the site. A crafted link can redirect visitors from the trusted site to an attacker-controlled destination.
See mitigation notes
CVE3.7
NVD6.1
Jan 06, 2021 CVE-2020-36176
Better Wp Security: A security weakness
Better Wp Security is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE7.5
NVD7.5
Jun 22, 2018 CVE-2018-12636
Better Wp Security: SQL injection
Better Wp Security is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE7.2
NVD7.2
Mar 02, 2018 CVE-2018-7433
Better Wp Security: A security weakness
Better Wp Security is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE7.5
NVD7.5
Aug 13, 2012 CVE-2012-4264
Better Wp Security: Cross-site scripting
Better Wp Security is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVE4.3
NVD4.3
Aug 13, 2012 CVE-2012-4263
Better Wp Security: Cross-site scripting
Better Wp Security is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVE4.3
NVD4.3