Vulnerabilities > Promolayer

DATE CVE VULNERABILITY TITLE RISK
2024-06-20 CVE-2024-3602 Missing Authorization vulnerability in Promolayer Popup Builder
The Pop ups, Exit intent popups, email popups, banners, bars, countdowns and cart savers – Promolayer plugin for WordPress is vulnerable to unauthorized plugin settings update due to a missing capability check on the disconnect_promolayer function in all versions up to, and including, 1.1.0.
network
low complexity
promolayer CWE-862
4.3