Cross Site Request Forgery Vulnerability in Xagio SEO Plugin by Xagio
CVE-2026-78295
8.8HIGH
What is CVE-2026-78295?
The Xagio SEO plugin for WordPress contains a serious vulnerability that allows unauthenticated attackers to exploit Cross Site Request Forgery (CSRF) issues. This flaw can enable unauthorized actions on behalf of unsuspecting users, potentially compromising the integrity and security of the affected WordPress sites. Users are advised to update to the latest version and implement security measures to mitigate the risks associated with this vulnerability.
Affected Version(s)
Xagio SEO <= 7.1.0.43