CVE-2024-3641
16.05.2024, 06:15
The Newsletter Popup WordPress plugin through 1.2 does not sanitise and escape some parameters, which could allow unauthenticated visitors to perform Cross-Site Scripting attacks against admins
Vendor | Product | Version |
---|---|---|
mndpsingh287 | newsletter_popup | 𝑥 ≤ 1.2 |
𝑥
= Vulnerable software versions