Input validation vulnerability in Popup by Supsystic 1.10.19

The Popup by Supsystic plugin for WordPress is vulnerable to a type of cyber attack known as Cross-Site Request Forgery. Up to version 1.10.19 of the plugin, it does not have the correct security measures in place to protect against this type of attack. This means that an attacker, without having to authenticate or log in, can trick an authorized user into clicking on a malicious link and unknowingly perform certain actions, such as sending a test email or saving plugin options.

Detected in:

Popup by Supsystic fixed vulnerable versions: >= * <= 1.10.19

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.