CVE-2024-3641
EUVD-2024-3222016.05.2024, 06:15
The Newsletter Popup WordPress plugin through 1.2 does not sanitise and escape some parameters, which could allow unauthenticated visitors to perform Cross-Site Scripting attacks against admins
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mndpsingh287 | newsletter_popup | 𝑥 ≤ 1.2 |
𝑥
= Vulnerable software versions