VYPR
High severity8.8NVD Advisory· Published Nov 8, 2021· Updated Jun 17, 2026

CVE-2021-24631

CVE-2021-24631

Description

The Unlimited PopUps WordPress plugin through 4.5.3 does not sanitise or escape the did GET parameter before using it in a SQL statement, available to users as low as editor, leading to an authenticated SQL Injection

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.