S-DEV SEO
S-DEV SEO has one disclosed vulnerability in the WordSec catalog, all reported in 2025; it remains unpatched as of September 2026. Their average CVSS score is 6.4, and the most serious one scores 6.4 out of 10.
The most common weakness is Cross-Site Scripting, behind 1 of the records (100%).
The one issue recorded for S-DEV SEO has no published fix yet, which makes virtual patching the only reliable mitigation. The oldest unresolved one dates back to 2025.
All of these findings were reported by SOPROBRO. S-DEV SEO is installed on roughly 50 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 5.4.21.
CVE-2025-22744S-DEV SEO <= 1.88 - Authenticated (Contributor+) Stored Cross-Site Scripting
Read the full analysisVulnerability Records

S-DEV SEO
Author
Seodev
SEO Tool which replace titles on selected pages and posts. Also adds ability for meta description. Important note This plugin uses “Session Buffering” to work with some websites (for forcing replacement of titles). This means that if your host / web server uses a cache service there is a possibility that a conflict might occur. We give no support regarding host / web server support to avoid this. Planned changes In the future we plan to change the backend overview and settings page so it will use WP Table structure instead for better handling.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C