WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in SEO Redirection Plugin – 301 Redirect Manager

Manage 301, 302, and 307 redirects from inside WordPress — no .htaccess needed. Track 404 errors, fix broken links, and protect your SEO.

9Reported vulnerabilities
8.8Highest CVSS score
9.19Latest version
10,000+Active installs

What to do now

Update SEO Redirection Plugin – 301 Redirect Manager to 9.19 or later. 9 of these have a fixed version available. Updating resolves them.

Plugin last updated: July 26, 2026 / Tested up to WordPress: 7.0.4 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2021-24187 Medium 5.4 0.6% Before 6.4 6.4 April 5, 2021
CVE-2022-40695 High 8.8 0.3% Before 9.1 9.1 November 18, 2022
CVE-2026-52702 High 7.2 0.1% 9.17 and earlier 9.18 June 12, 2026
WF-9de09daa-a3e0-4563-bdc9-79cb5e4b039b Medium 6.5 7.8 and earlier 7.9 September 15, 2021
CVE-2016-10896 Medium 6.1 0.9% Before 4.3 4.3 August 21, 2019
WF-b13f1fb2-5dbc-4d7d-b4cc-b6dc6804531a Medium 6.1 7.3 and earlier 7.4 September 13, 2021
WF-7ca83efe-298c-4ce9-a726-dbe76607aebf Medium 6.1 Before 2.9 2.9 August 21, 2015
CVE-2026-13703 Medium 4.3 0.1% 9.18 and earlier 9.19 August 3, 2026
CVE-2022-38704 Medium 4.3 0.3% 8.9 and earlier 9.1 September 23, 2022

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.