Medium severity4.8NVD Advisory· Published Oct 19, 2021· Updated Jun 17, 2026
CVE-2021-36832
CVE-2021-36832
Description
WordPress Popups, Welcome Bar, Optins and Lead Generation Plugin – Icegram (versions <= 2.0.2) vulnerable at "Headline" (&message_data[16][headline]) input.
Affected products
2- Icegram/Popups, Welcome Bar, Optins and Lead Generation Plugin – Icegramv5Range: <= 2.0.2
Patches
Vulnerability mechanics
References
2- patchstack.com/database/vulnerability/icegram/wordpress-icegram-plugin-2-0-2-authenticated-stored-cross-site-scripting-xss-vulnerabilitynvdThird Party Advisory
- wordpress.org/plugins/icegram/nvdProductThird Party Advisory
News mentions
0No linked articles in our index yet.