WordPress Popup Maker plugin <= 1.17.1 - Broken Access Control vulnerability
CVE-2022-45819
3.5LOW
What is CVE-2022-45819?
A missing authorization vulnerability exists in Popup Maker, which may lead to the exploitation of incorrectly configured access control security levels. This flaw can allow unauthorized users to gain access to functionality intended for admin users, potentially leading to unauthorized actions on the platform. Users of Popup Maker versions up to 1.17.1 are advised to review their security settings and apply necessary updates to mitigate risks associated with this vulnerability.
Affected Version(s)
Popup Maker <= 1.17.1