WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in Tooltipy (tooltips for WP)

Automatically add customizable keyword tooltips to your content and boost SEO, UX, and engagement — no coding required.

4Reported vulnerabilities
6.5Highest CVSS score
5.5.9Latest version
1,000+Active installs

What to do now

Update Tooltipy (tooltips for WP) to 5.5.9 or later. 3 of these have a fixed version available. Updating resolves them.

Plugin last updated: April 24, 2026 / Tested up to WordPress: 6.7.7 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2018-1000505 Medium 6.5 0.5% Before 5.1 5.1 June 20, 2018
CVE-2025-62917 Medium 6.4 0.2% 5.5.9 and earlier October 3, 2025
CVE-2025-58614 Medium 6.4 0.2% 5.5.6 and earlier 5.5.9 September 3, 2025
CVE-2018-1000512 Medium 6.1 0.8% Before 5.1 5.1 June 12, 2018

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.