Vulnerabilities > Sticky Popup Project

DATE CVE VULNERABILITY TITLE RISK
2022-06-13 CVE-2022-1750 Cross-site Scripting vulnerability in Sticky Popup Project Sticky Popup 1.2
The Sticky Popup plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘ popup_title' parameter in versions up to, and including, 1.2 due to insufficient input sanitization and output escaping.
network
low complexity
sticky-popup-project CWE-79
4.8