CVE · Medium

CVE-2022-47597 — Popup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popup Builder [popup-maker] < 1.18.0

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2022-47597 Popup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popup Builder [popup-maker] < 1.18.0 Exposure of Sensitive Information to an Unauthorized Actor Medium 5.3 < 1.18.0 1.18.0 2023-03-14

CVE-2022-47597

The Popup Maker plugin for WordPress through version 1.17.1 contains a sensitive information exposure vulnerability where debug log files are created with predictable names, enabling unauthenticated attackers to access and view these logs. This flaw allows unauthorized users to discover and read log files that should remain protected. The vulnerability was patched in version 1.18.0.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.