CM Pop-Up – Create engaging popups to capture attention and boost interaction

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Access violation vulnerability in CM Pop-Up – Create engaging popups to capture attention and boost interaction 1.8.4

    Fixed

    The CM Pop-Up WordPress plugin, which allows users to create popups to attract attention and increase engagement, has a security vulnerability. This means that people who are not authorized to access...

    Read More
  • Input validation vulnerability in CM WordPress Search And Replace Plugin 1.4.2

    Fixed

    Several plugins for WordPress are at risk for a type of cyber attack known as Reflected Cross-Site Scripting. This is because the plugins do not properly protect against input from potential attacker...

    Read More
  • Input validation vulnerability in CM Pop-Up Banners for WordPress 1.7.2

    Fixed

    The CM Pop-Up Banners plugin for WordPress has a security issue where malicious code can be added to campaigns, which can affect all versions up to 1.7.2. This can be done by attackers with a certain...

    Read More
  • Input validation vulnerability in CM Popup Plugin for WordPress – Popup Maker 1.6.5

    Fixed

    The CM Popup Plugin for WordPress, also known as the Popup Maker plugin, has a security issue that could affect all versions up to 1.6.5. This vulnerability allows hackers with contributor-level acce...

    Read More
  • Input validation vulnerability in CM Pop-Up banners for WordPress 1.5.10

    Fixed

    The CM Pop-Up banners plugin for WordPress is not secure for versions up to and including 1.5.10. People who have accounts on the website with at least “subscriber-level” access can use special co...

    Read More
  • Input validation vulnerability in CM Pop-Up banners for WordPress 1.4.10

    Fixed

    The 'CM Pop-Up banners' plugin for WordPress is not secure in versions up to 1.4.10. This means that people with malicious intent can add dangerous code to the plugin which can be executed when someo...

    Read More