First published: Thu Nov 28 2024(Updated: )
Improper Control of Generation of Code ('Code Injection') vulnerability in Rank Math SEO allows Code Injection.This issue affects Rank Math SEO: from n/a through 1.0.231.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Rank Math SEO | <=1.0.231 | |
Rank Math SEO | <=1.0.231 |
Update the WordPress Rank Math SEO plugin to the latest available version (at least 1.0.232).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-11620 is classified as critical due to its potential for arbitrary code execution.
To fix CVE-2024-11620, upgrade Rank Math SEO to version 1.0.232 or later.
CVE-2024-11620 affects all versions of Rank Math SEO up to and including 1.0.231.
CVE-2024-11620 is an improper control of generation of code, resulting in a code injection vulnerability.
The potential impacts of CVE-2024-11620 include unauthorized execution of code, leading to potential site takeover.