CVE-2022-3690
Popup Maker < 1.16.11 - Contributor+ Stored Cross Site ScriptingThe Popup Maker WordPress plugin before 1.16.11 does not sanitise and escape some of its Popup options, which could allow users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks, which could be used against admins
We have discovered 48,743 live websites that are affected by CVE-2022-3690.
Contact us to get more info
Common Weakness Enumeration
CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Distribution by Website Rank
The diagram provides a graphic representation of the correlation between the occurrence of CVE-2022-3690 and the relative popularity of websites