Update the WordPress WP Spell Check plugin to the latest available version (at least 9.10).
An unknown person discovered and reported this SQL Injection vulnerability in WordPress WP Spell Check Plugin. This could allow a malicious actor to directly interact with your database, including but not limited to stealing information and creating new administrator accounts. This vulnerability has been fixed in version 9.10.
Admin+ Stored CrossSite Scripting Vulnerability
26.12.2022
Reflected CrossSite Scripting (XSS) vulnerability
25.10.2021
CrossSite Request Forgery (CSRF) vulnerability
26.11.2019