Skip to main content

Vendor archive

newsletter_popup_project CVEs

Beta · best-effort

2 CVEs tagged to vendor newsletter_popup_project0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2023-0766

Published May 30, 2023

The Newsletter Popup WordPress plugin through 1.2 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSRF a…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-0733

Published May 30, 2023

The Newsletter Popup WordPress plugin through 1.2 does not sanitise and escape some of its settings, which could allow unauthenticated users to perform Stored Cross-Site Scripting…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1