Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

Poll Maker — Vulnerabilities & Security Advisories 14

All 14 CVE vulnerabilities found in Poll Maker, with AI-generated Chinese analysis, references, and POCs.

This page is a vulnerability aggregation report for the vendor Poll Maker, focusing on common software weaknesses. It compiles a comprehensive collection of security vulnerabilities associated with this product, covering incidents disclosed between 2018 and 2024. The dataset includes flaws ranging from remote code execution and cross-site scripting to privilege escalation and information disclosure issues. Readers can utilize this resource to track the vendor’s security advisories over time, gaining insight into their patching practices and response timelines. Furthermore, this page allows users to understand specific weakness classes in the context of Poll Maker’s architecture, illustrating how abstract vulnerability types manifest in real-world applications. Users may also look up the product’s complete vulnerability history to assess long-term security trends and risk exposure. By aggregating these findings, the page serves as a centralized reference for security researchers, developers, and auditors interested in the safety profile of Poll Maker. This structured overview eliminates the need to search multiple external sources, providing a clear narrative of past vulnerabilities and their remediation statuses. The information presented is intended to support informed decision-making regarding software procurement, risk assessment, and mitigation strategies without implying any endorsement or criticism of the vendor.

Vendor: Ays Pro

CVE IDTitleCVSSSeverityPublished
CVE-2025-57954 WordPress Poll Maker Plugin <= 6.0.2 - Cross Site Scripting (XSS) Vulnerability CWE-79 6.5 Medium2025-09-22
CVE-2025-47545 WordPress Poll Maker plugin <= 5.7.7 - Race Condition Vulnerability CWE-362 5.3 Medium2025-05-07
CVE-2025-24577 WordPress Poll Maker plugin <= 5.5.0 - Broken Access Control vulnerability CWE-862 6.5 Medium2025-04-17
CVE-2024-13602 Poll Maker < 5.5.4 - Admin+ Stored XSS 4.8 -2025-03-16
CVE-2025-26971 WordPress Poll Maker <= 5.6.5 - SQL Injection vulnerability CWE-89 7.6 High2025-02-25
CVE-2024-56277 WordPress Poll Maker Plugin < 5.5.5 - HTML Injection vulnerability CWE-116 5.3 Medium2025-01-21
CVE-2024-56295 WordPress Poll Maker plugin <= 5.5.6 - Broken Access Control vulnerability CWE-862 6.5 Medium2025-01-15
CVE-2023-45766 WordPress Poll Maker plugin <= 4.7.1 - Broken Access Control vulnerability CWE-862 5.3 Medium2025-01-02
CVE-2023-50904 WordPress Poll Maker plugin <= 4.8.0 - Broken Access Control vulnerability CWE-862 5.3 Medium2024-12-09
CVE-2023-41871 WordPress Poll Maker Plugin <= 4.7.0 is vulnerable to Cross Site Scripting (XSS) CWE-79 7.1 High2023-09-25
CVE-2022-1456 Poll Maker < 4.0.2 - Admin+ Stored Cross-Site Scripting CWE-79 4.8 -2022-05-30
CVE-2021-24651 Poll Maker < 3.4.2 - Unauthenticated Time Based SQL Injection CWE-89 7.5 -2021-10-11
CVE-2021-34635 Poll Maker <= 3.2.8 - Reflected Cross-Site Scripting CWE-79 6.1 Medium2021-08-02
CVE-2021-24483 Poll Maker < 3.2.1 - Authenticated Blind SQL Injections CWE-89 7.2 -2021-08-02

All 14 known CVE vulnerabilities affecting Poll Maker with full Chinese analysis, references, and POCs where available.