Unknown Really Simple Security

3 known vulnerabilities in Unknown Really Simple Security, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-88798 CVSS 5.3 medium The Really Simple Security WordPress plugin before 9.8.3 does not validate a client-supplied address value before using it as a storage…
  • CVE-2026-89080 CVSS 7.5 high The Really Simple Security WordPress plugin before 9.8.1 does not prevent an unauthenticated request from resetting an account's completed…
  • CVE-2026-81766 CVSS 6.6 medium The Really Simple Security WordPress plugin before 9.8.0 does not check that the user is allowed to install Really Simple Security…