Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Poll Maker — Vulnerabilities & Security Advisories 14

All 14 CVE vulnerabilities found in Poll Maker, with AI-generated Chinese analysis, references, and POCs.

This page tracks known security weaknesses associated with Poll Maker, a vendor of online polling and survey software, specifically focusing on common vulnerability classifications such as cross-site scripting and injection flaws. It aggregates a comprehensive collection of public advisories, bug reports, and vulnerability records covering the period from 2010 through the present day, ensuring that historical and recent security incidents are systematically documented. By providing a centralized repository of this data, the page allows security researchers and system administrators to efficiently track a vendor's advisories over time, understand the prevalence and characteristics of a specific weakness class within the product ecosystem, and look up a product's vulnerability history to assess long-term risk profiles. Users can navigate through detailed descriptions to see how flaws were reported, patched, or exploited, facilitating a deeper analysis of the software's security posture. This resource is designed to support threat modeling, compliance auditing, and informed decision-making regarding software updates and mitigation strategies. The information presented here is derived from publicly available sources and vendor disclosures, offering a transparent view of the security landscape for this specific tool. Whether you are conducting a retrospective analysis or monitoring for emerging threats, this aggregation provides the necessary context to evaluate the stability and safety of Poll Maker installations in enterprise environments. The data is organized to highlight trends and recurring issues, helping teams prioritize remediation efforts effectively.

Vendor: Ays Pro

CVE ID Title CVSS Severity Published
CVE-2025-57954 WordPress Poll Maker Plugin <= 6.0.2 - Cross Site Scripting (XSS) Vulnerability CWE-79 6.5 Medium 2025-09-22
CVE-2025-47545 WordPress Poll Maker plugin <= 5.7.7 - Race Condition Vulnerability CWE-362 5.3 Medium 2025-05-07
CVE-2025-24577 WordPress Poll Maker plugin <= 5.5.0 - Broken Access Control vulnerability CWE-862 6.5 Medium 2025-04-17
CVE-2024-13602 Poll Maker < 5.5.4 - Admin+ Stored XSS 4.8 - 2025-03-16
CVE-2025-26971 WordPress Poll Maker <= 5.6.5 - SQL Injection vulnerability CWE-89 7.6 High 2025-02-25
CVE-2024-56277 WordPress Poll Maker Plugin < 5.5.5 - HTML Injection vulnerability CWE-116 5.3 Medium 2025-01-21
CVE-2024-56295 WordPress Poll Maker plugin <= 5.5.6 - Broken Access Control vulnerability CWE-862 6.5 Medium 2025-01-15
CVE-2023-45766 WordPress Poll Maker plugin <= 4.7.1 - Broken Access Control vulnerability CWE-862 5.3 Medium 2025-01-02
CVE-2023-50904 WordPress Poll Maker plugin <= 4.8.0 - Broken Access Control vulnerability CWE-862 5.3 Medium 2024-12-09
CVE-2023-41871 WordPress Poll Maker Plugin <= 4.7.0 is vulnerable to Cross Site Scripting (XSS) CWE-79 7.1 High 2023-09-25
CVE-2022-1456 Poll Maker < 4.0.2 - Admin+ Stored Cross-Site Scripting CWE-79 4.8 - 2022-05-30
CVE-2021-24651 Poll Maker < 3.4.2 - Unauthenticated Time Based SQL Injection CWE-89 7.5 - 2021-10-11
CVE-2021-34635 Poll Maker <= 3.2.8 - Reflected Cross-Site Scripting CWE-79 6.1 Medium 2021-08-02
CVE-2021-24483 Poll Maker < 3.2.1 - Authenticated Blind SQL Injections CWE-89 7.2 - 2021-08-02

All 14 known CVE vulnerabilities affecting Poll Maker with full Chinese analysis, references, and POCs where available.