AMP for WP – Accelerated Mobile Pages

Explore AMP for WP – Accelerated Mobile Pages vulnerabilities across all versions. Currently tracking 15 known vulnerabilities, including severity, impact, and patch status.

01234567891007.02.2016Today20.10.20186.3AMP for WP <= 0.9.97.19 - Missing Authorization CVSS 6.3 · 20.10.201820.11.20185.4AMP for WP <= 0.9.97.20 - Stored Cross-Site Scripting CVSS 5.4 · 20.11.201811.12.20215.5AMP for WP – Accelerated Mobile Pages <= 1.0.77.31 - Authenticated (Admin+) Stored Cross-Site Scripting CVSS 5.5 · 11.12.202115.12.20215.5AMP for WP <= 1.0.77.32 - Authenticated Stored Cross-Site Scripting CVSS 5.5 · 15.12.202128.11.20236.4Accelerated Mobile Pages <= 1.0.88.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via shortcode CVSS 6.4 · 28.11.202318.12.20236.4AMP for WP – Accelerated Mobile Pages <= 1.0.92 - Authenticated (Contributor+) Cross-Site Scripting via Shortcode CVSS 6.4 · 18.12.202322.01.20246.1Accelerated Mobile Pages <= 1.0.92.1 - Reflected Cross-Site Scripting CVSS 6.1 · 22.01.202406.02.20246.5AMP for WP <= 1.0.93.1 - Authenticated(Contributor+) Arbitrary Post Deletion via amppb_remove_saved_layout_data CVSS 6.5 · 06.02.202423.07.20246.4AMP for WP – Accelerated Mobile Pages <= 1.0.96.1 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload CVSS 6.4 · 23.07.202407.08.20244.3AMP for WP <= 1.0.96.1 - Missing Authorization CVSS 4.3 · 07.08.202424.10.20248.8AMP for WP – Accelerated Mobile Pages <= 1.0.99.1 - Cross-Site Request Forgery to Privilege Escalation CVSS 8.8 · 24.10.202417.12.20246.1AMP for WP – Accelerated Mobile Pages <= 1.1.1 - Reflected Cross-Site Scripting CVSS 6.1 · 17.12.202406.01.20264.3AMP for WP – Accelerated Mobile Pages <= 1.1.9 - Cross-Site Request Forgery to Comment Submission CVSS 4.3 · 06.01.202608.01.20266.4AMP for WP <= 1.1.10 - Authenticated (Contributor+) Stored Cross-Site Scripting via SVG File Upload CVSS 6.4 · 08.01.202606.07.20267.5AMP for WP <= 1.1.12 - Authenticated (Author+) Arbitrary File Write via Role-Based Access Configuration with Local Font Upload CVSS 7.5 · 06.07.2026

Strategic Overview

Avg CVSSMedium
6.1/ 10
Patch Coverage100%
Open

0

Fixed

15

Get automatic notifications for all AMP for WP – Accelerated Mobile Pages vulnerabilities before they are exploited.

Vulnerability Records

15 records
2026-07-06 00:00CVE-2026-6101
7.5
High
Leonid Semenenko (lsemenenko)Yes
2026-01-08 19:34CVE-2026-0627
6.4
Medium
andrea bocchettiYes
2026-01-06 16:00CVE-2025-14468
4.3
Medium
0N0iseYes
2024-12-17 14:47CVE-2024-11254
6.1
Medium
Xiaoyong WuYes
2024-10-24 00:00CVE-2024-9598
8.8
High
David Gallagher (BatFeats)Yes
2024-08-07 00:00CVE-2024-43146
4.3
Medium
Rafie MuhammadYes
2024-07-23 21:41CVE-2024-6896
6.4
Medium
wesley (wcraft)Yes
2024-02-06 00:00CVE-2024-1043
6.5
Medium
Sean MurphyYes
2024-01-22 00:00CVE-2024-0587
6.1
Medium
stealthcopterYes
2023-12-18 00:00CVE-2023-6782
6.4
Medium
Ngô Thiên An (ancorn_)Yes
Showing 1–10 of 15 reports
AMP for WP &#8211; Accelerated Mobile Pages banner
Latestv1.1.15

AMP for WP &#8211; Accelerated Mobile Pages

Mohammed Kaludi

Author

Mohammed Kaludi

4.4(1,317)
88/100
Last Updated
2026-07-24 (6d ago)
Active Installs
80,000+
Downloads
19,247,879
Requires WP
3.0+
Requires PHP
0+
Tested up to
WP 7.0.2
Created
2016-02-07 (11y ago)

AMP for WP automatically adds Accelerated Mobile Pages (Google AMP Project) functionality to your WordPress site. AMP makes your website faster for Mobile visitors. What’s New in this Version? | Priority Support | View Demo | Screenshots | Community Extensions Some useful extensions to extend AMP features, check AMP Adsense Support, Contact Form 7 Support, Email Opt-in Support and Call To Action Support. To view more, go to our Extensions page. Support We try our best to provide support on WordPress.org forums. However, We have a special community support where you can ask us questions and get help about your AMP related questions. Delivering a good user experience means a lot to us and so we try our best to reply each and every question that gets asked. Bug Reports Bug reports for AMP for WP are welcomed on GitHub. Please note GitHub is not a support forum, and issues that aren’t properly qualified as bugs will be closed. Features: NEW – Gutenberg Support NEW – Divi and Elementor Support More Info NEW – GDPR Compliance NEW – Google PageSpeed Optimization with SSR (Server Side Rendering) NEW – CSS Optimization (Tree Shaking) – This will automatically remove all the unused CSS from your AMP pages NEW – Google Font API and Local Fonts Support For All Designs Out of the box compatibility for Yoast SEO, All in One Seo, Rank Math, Genesis, SEOPress, Bridge Qode SEO, The SEO Framework, SmartCrawl and Squrilly SEO Plugin. Introducing Page Builder 3.0 for AMP! Learn More & Video New Default Theme for AMP called Swift 3 Pre-built AMP Layouts for Business websites and landing pages OneSignal and TruePush Push Notifications integration Advanced WooCommerce Support More Info AMP Plugins Manager – Which allows you to disable a specific plugin functionality only in the AMP version Structured Data Options Page Break / NextPage (Pagination) Support Contact Form 7 Support More Info Graviry Form Support More Info Caldera Form Support More Info Ninja Form Support More Info Facebook Comments Support Github Gist Support Email Opt-in Subscription form support in AMP added Call to Action boxes and notification bars 9 Advertisement sizes – 2 More AD slots added recently Comments Forms in AMP. Native AMP Search functionality. Design 3 Watch the Video Overview Disqus Comments Support Vuukle Comments Support Spot.IM Comments Support Google Tag Manager Support Page, Category & Tags Support Added Custom AMP Editor – Which allows you to override your Content that you had written in Post or page, so you can add the different content just for AMP. Mobile Redirection – More than 50% of your traffic is from mobile and you aren’t doing anything to improve their user experience, which means you are falling behind on SEO and it can result in lower SERPS. Lightning fast mobile version means faster User experience means more engagement which directly results in the lower bounce rate. Custom Post Type Support Custom Taxonomies Support Star Ratings Drag & Drop Page builder Added 4 Designs for AMP AMP WooCommerce Support Switch on/off Support for Pages & Posts on AMP Translation Panel & RTL Internal AMP linking – You can browse AMP pages internally Related posts below the post Recent Comments list Automatically integrate AMP to your website. Google Adsense (AMP-AD) Support with 6 different Ad slots across the layout! The First Plugin to have this capability. Built in MGID Ads Support with 6 different ad slots. Google Analytics Support. User Friendly Theme Options Panel. Unlimited Color Scheme. Image Logo Upload. Supports Posts and Pages and other custom post types. Proper rel canonical tags which means that Google know the original page. Overlay Navigation Menu bar. Social Sharing in the Single. Sexy Design. Separate WordPress Menu for AMP version. Page builder & Shortcodes Compatibility. Carousel support for Gallery. Better Image stretching and resizing. Youtube Video Embed Support. Vine Embed Support. Twitter oembed Support. Instagram Embed Support. Facebook Video Embed Support. RTL Support Custom AMP FrontPage Notifications Alexa Metrics, Chartbeat, Hi-stats, Yandex Metrika, Piwik, Segment.com, StatCounter, Effective Measure and comScore Builtin Support Incontent & DoubleClick Support Great Support & Active Development. Widgets & WooCommerce Breadcrumb Support added Facebook Instant Articles Support Added AMP Installation Wizard that makes it easy to setup for new users. Category base remover support Tag base remover support Addthis Sharing Support Infinite Scroll Support Photo Gallery by 10Web Support 12 New Social Media Integrations added (Reddit, Tumblr, Telegram, Digg, StumbleUpon, Wechat, Viber, Hatena Bookmarks, Pocket, Yummly, MeWe, Flipboard) AMP Theme Framework Core Support Added. You can now create AMP templates of your own in just minutes. More NEW – Make AMP & Non-AMP Same with just one click! NEW – Allows you to use AMP as primary website! JOIN CHAT GROUP COMMUNITY: Purpose of this group is to get proper suggestions and feedback from plugin users and the community so that we can make the plugin even better. Getting Started: 1. User Documentation: The AMP for WordPress plugin is easy to setup but we have some tutorials and guides prepared for you which will help you dive deep with the plugin. 2. Developer Docs: We have created special documentations for developers and semi technical users who are willing to modify the plugin according to their own needs. 3. Support: We try our best to provide support on WordPress.org forums. However, We have a special community support where you can ask us questions and get help about your AMP related questions. Delivering a good user experience means a lot to us and so we try our best to reply each and every question that gets asked. 4. Premium Support: We will personally take care that your website’s AMP version is perfectly validated. We will make sure that your AMP version gets approved and indexed by Google Webmaster Tools properly and we will even keep an eye on AMP updates from Google and implement them into your website. Credits Some code used in this plugin was forked from &#8216;AMP for WordPress’ plugin https://wordpress.org/plugins/amp/ – License URI: http://www.gnu.org/licenses/gpl-2.0.html. Mobile & Tablet detection library used https://github.com/serbanghita/Mobile-Detect – License URI: https://github.com/serbanghita/Mobile-Detect/blob/master/LICENSE.txt PHP CSS Parser library used https://github.com/sabberworm/PHP-CSS-Parser – License URI: https://github.com/sabberworm/PHP-CSS-Parser#license (PHP-CSS-Parser is freely distributable under the terms of an MIT-style license.) AMP Optimizer library used https://github.com/ampproject/amp-toolbox/tree/main/packages/optimizer – License URI: https://github.com/ampproject/amp-toolbox#license (AMP Toolbox is made by the AMP Project, and is licensed under the Apache License, Version 2.0.) GA4 Code used from https://github.com/analytics-debugger/google-analytics-4-for-amp – License URI: https://github.com/analytics-debugger/google-analytics-4-for-amp/blob/main/LICENSE

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C