Update the WordPress Export All URLs plugin to the latest available version (at least 4.2).
Universe discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Export All URLs Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site. This vulnerability has been fixed in version 4.2.
Authenticated Arbitrary System File Removal vulnerability
08.08.2022
Reflected CrossSite Scripting (XSS) vulnerability
21.03.2022
Private/Draft Post/Page Title Disclosure via CrossSite Request Forgery (CSRF) vulnerability
21.03.2022