Authorization Bypass Through User-Controlled Key vulnerability in Crocoblock JetPopup allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JetPopup: from n/a through 2.0.20.1.
We have discovered 24,466 live websites that are affected by CVE-2025-68502.
| Product | |
| Category | Wordpress Plugins |
| Vulnerable Domains | 24,466 live websites (94% of Crocoblock JetPopup install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 60 versions ( 97% of all versions) |
| 6,218 websites | |
| 2,302 websites | |
| 1,372 websites | |
| 1,339 websites | |
| 924 websites | |
| 889 websites | |
| 858 websites | |
| 785 websites | |
| 777 websites | |
| 667 websites |
| .com | 9,176 websites |
| .de | 1,392 websites |
| .com.br | 1,217 websites |
| .org | 901 websites |
| .nl | 820 websites |
| .fr | 614 websites |
| .ru | 610 websites |
| .it | 559 websites |
| .co.uk | 474 websites |
| .es | 403 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| *****.com | *** | ||
| ******************.com | **,*** | ||
| *****************.net | **,*** | ||
| ******.com | **,*** | ||
| ******.com | **,*** | ||
| **********.org | **,*** | ||
| **************.com | **,*** | ||
| **********.com | **,*** | ||
| ********.com | **,*** | ||
| ******.de | **,*** |
FAQ