SEOWriting
SEOWriting has one disclosed vulnerability in the WordSec catalog, all reported in 2026; it remains unpatched as of September 2026. Their average CVSS score is 6.4, and the most serious one scores 6.4 out of 10.
The most common weakness is Cross-Site Scripting, behind 1 of the records (100%).
The one issue recorded for SEOWriting has no published fix yet, which makes virtual patching the only reliable mitigation. The oldest unresolved one dates back to 2026.
All of these findings were reported by Aurélien BOURDOIS (Elymaro). SEOWriting is installed on roughly 30,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.9.7.
CVE-2026-75134SEOWriting <= 1.12.5 - Authenticated (Contributor +) Stored Cross-Site Scripting
Read the full analysisVulnerability Records
SEOWriting
Author
seowriting
SEO WRITING – an all-in-one solution for creating SEO-optimized content. Featuring Super Page, our super-agent that scans SERP top-ranking competitors to extract winning strategies and create complete, optimized pages with perfect structure, relevant images, optimal word count, and strategic CTAs in minutes. SEO WRITING’s powerful plugin allows you to seamlessly publish titles, texts, images, meta titles, and meta descriptions on your WordPress website. The installation process is quick and easy, and you can find a step-by-step guide here. The plugin uses the REST-API provided by https://seowriting.ai/. The Service is provided under the terms of Terms of Service and Privacy Policy.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C