Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Popup Maker — Vulnerabilities & Security Advisories 4

Browse all 4 CVE security advisories affecting Popup Maker. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Popup Maker is a WordPress plugin for creating custom popups and modals. Historically, it has been vulnerable to multiple security issues including stored cross-site scripting (XSS) through improper input sanitization, arbitrary file deletion leading to privilege escalation, and remote code execution via unsafe deserialization. The plugin's four recorded CVEs highlight risks from insufficient access controls and insecure data handling. While no major public incidents have been widely documented, the consistent pattern of vulnerabilities in a popular plugin with over 1 million active installations makes it a persistent target for attackers seeking to exploit WordPress sites.

Found 2 results / 4 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2022-45819 WordPress Popup Maker plugin <= 1.17.1 - Broken Access Control vulnerability — Popup Maker CWE-862 3.5 Low 2024-12-13
CVE-2017-2284 WordPress Popup Maker 跨站脚本漏洞 — Popup Maker 6.1 - 2017-08-02

This page lists every published CVE security advisory associated with Popup Maker. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.