The Popup | Custom Popup Builder WordPress plugin before 1.3.1 autoload data from its popup on every pages, as such data can be sent by unauthenticated user, and is not validated in length, this could cause a denial of service on the blog
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/ca2e8feb-15d6-4965-ad9c-8da1bc01e0f4 | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2022-02-14 04:15
Updated : 2022-02-22 12:07
NVD link : CVE-2022-0214
Mitre link : CVE-2022-0214
JSON object : View
CWE
CWE-400
Uncontrolled Resource Consumption
Products Affected
popup_\|_custom_popup_builder_project
- popup_\|_custom_popup_builder