plugin

Promolayer Popup Builder Vulnerabilities

2 known security issues reported for the Promolayer Popup Builder WordPress plugin. Most recent disclosed Jun 20, 2024.

1 medium

Running Promolayer Popup Builder on your site? Check whether your installed version is affected.

Scan your site free

Pop ups, Exit intent popups, email popups, banners, bars, countdowns and cart savers &#8211; Promolayer [promolayer-popup-builder] < 1.1.1

unknown

[en] The Pop ups, Exit intent popups, email popups, banners, bars, countdowns and cart savers – Promolayer plugin for WordPress is vulnerable to unauthorized plugin settings update due to a missing capability check on the disconnect_promolayer function in all versions up to, and including, 1.1.0. This makes it possible...

Affected:
up to 1.1.1
Fixed in:
1.1.1
Disclosed:
Jun 20, 2024

CVE-2024-3602 on NVD →

Pop ups, Exit intent popups, email popups, banners, bars, countdowns and cart savers – Promolayer <= 1.1.0 - Missing Authorization

medium

The Pop ups, Exit intent popups, email popups, banners, bars, countdowns and cart savers – Promolayer plugin for WordPress is vulnerable to unauthorized plugin settings update due to a missing capability check on the disconnect_promolayer function in all versions up to, and including, 1.1.0. This makes it possible for...

CVSS:
4.3
Affected:
up to 1.1.0
Fixed in:
1.1.1
Disclosed:
Jun 19, 2024

CVE-2024-3602 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database