Embedpress

WordPress plugin · embedpress · WordPress.org ↗
0
Critical
0
High
4
Known total
0
Unfixed
Running Embedpress on your site? WP Alerts checks your installed version against every entry below and emails you only when one affects you. Free, no tracking.
Scan a site Monitor my sites →
SeverityVulnerabilityAffectedFixed inCVEPublished
MEDIUM
CVSS 5.3
EmbedPress 4.6.0 - 4.6.3 - Unauthenticated Google Reviews API Quota Consumption and Database Bloat
CVE.org
>=4.6.0, <4.6.4 v4.6.4 CVE-2026-84936 Sep 5, 2026
MEDIUM
CVSS 5.8
EmbedPress < 4.6.1 - Unauthenticated Blind SSRF
CVE.org
>=0, <4.6.1 v4.6.1 CVE-2026-10526 Aug 4, 2026
LOW
CVSS 2.7
EmbedPress 4.6.0 - 4.6.3 - Contributor+ Administrator Email Disclosure via Google Reviews REST Route
CVE.org
>=4.6.0, <4.6.4 v4.6.4 CVE-2026-84926 Sep 5, 2026
LOW
CVSS 2.7
EmbedPress 4.6.0 - 4.6.3 - Contributor+ Google Reviews Modification
CVE.org
>=4.6.0, <4.6.4 v4.6.4 CVE-2026-84927 Sep 5, 2026

Data aggregated from WPVulnerability, NVD/NIST, ENISA EUVD, CVE.org and WordPress.org. Provided as-is; verify with the plugin author before acting. Disclaimer.