CVE Database /
CVE-2022-47597
CVE · Medium
CVE-2022-47597 — Popup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popup Builder [popup-maker] < 1.18.0
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2022-47597
|
Popup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popup Builder [popup-maker] < 1.18.0 |
Exposure of Sensitive Information to an Unauthorized Actor |
Medium
5.3
|
< 1.18.0
|
1.18.0 |
2023-03-14 |
—
|
CVE-2022-47597
The Popup Maker plugin for WordPress through version 1.17.1 contains a sensitive information exposure vulnerability where debug log files are created with predictable names, enabling unauthenticated attackers to access and view these logs. This flaw allows unauthorized users to discover and read log files that should remain protected. The vulnerability was patched in version 1.18.0.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings