VYPR

Unlimited Popups

by Unlimited Popups Project

CVEs (1)

  • CVE-2021-24631HigNov 8, 2021
    risk 0.57cvss 8.8epss 0.02

    The Unlimited PopUps WordPress plugin through 4.5.3 does not sanitise or escape the did GET parameter before using it in a SQL statement, available to users as low as editor, leading to an authenticated SQL Injection