Unauthenticated Broken Authentication in Popup by Supsystic Plugin
CVE-2026-73381
9.1CRITICAL
What is CVE-2026-73381?
The Popup by Supsystic plugin versions up to 1.13.0 contains a vulnerability that allows unauthenticated users to exploit broken authentication mechanisms. This weakness can enable unauthorized access to sensitive areas of the application, potentially leading to further attacks or data breaches. Developers are encouraged to update to the latest version to mitigate this risk.
Affected Version(s)
Popup by Supsystic <= 1.13.0