Semperplugins develops WordPress plugins focused on search-engine optimization and site management, with a narrow but actively maintained product line centered on the All in One SEO Pack plugin. The vendor's vulnerability profile reflects its position in the WordPress ecosystem, with observed exposure rooted in input-handling weaknesses such as cross-site scripting, a class endemic to web-application plugin development. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Semperplugins over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-5988MEDIUM A Cross-site Scripting (XSS) vulnerability exists in the All in One SEO Pack plugin before 2.0.3.1 for WordPress via the Search parameter. | Feb 11, 2020 | 6.1 | 20 | NO | NO |
CVE-2020-35946MEDIUM An issue was discovered in the All in One SEO Pack plugin before 3.6.2 for WordPress. The SEO Description and Title fields are vulnerable to unsanitized input from a Contributor, l | Jan 1, 2021 | 5.4 | 19 | NO | NO |
CVE-2019-16520MEDIUM The all-in-one-seo-pack plugin before 3.2.7 for WordPress (aka All in One SEO Pack) is susceptible to Stored XSS due to improper encoding of the SEO-specific description for posts | Oct 16, 2019 | 5.4 | 18 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Semperplugins.
Media articles that mention a CVE ID that affects a product developed by Semperplugins — matched by CVE ID, not by vendor name.