code-atlantic records
15 published records for vendor code-atlantic.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 33.3%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')11
- CWE-862 Missing Authorization2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-639 Authorization Bypass Through User-Controlled Key1
The weakness classes this vendor ships most often: where to look.
CWEAll records
15 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2019-17574Proof of concept | An issue was discovered in the Popup Maker plugin before 1.8.13 for WordPress.code-atlantic · popup maker · CWE-639 | Critical9.1 | — | 9.4% | Oct 14, 2019 |
39Monitor | CVE-2024-47358No exploit | WordPress Popup Maker plugin <= 1.19.2 - Broken Access Control vulnerabilitycode-atlantic · popup maker · CWE-862 | Critical9.8 | — | 0.4% | Nov 1, 2024 |
36Monitor | CVE-2022-1104Proof of concept | Popup Maker < 1.16.5 - Admin+ Stored Cross-Site Scriptingcode-atlantic · popup maker · CWE-79 | Medium4.8 | — | 56.4% | May 9, 2022 |
30Monitor | CVE-2022-47597No exploit | WordPress Popup Maker Plugin <= 1.17.1 is vulnerable to Sensitive Data Exposurecode-atlantic · popup maker · CWE-200 | High7.5 | — | 0.6% | Dec 20, 2023 |
24Monitor | CVE-2017-2284No exploit | Cross-site scripting vulnerability in Popup Maker prior to version 1.6.5 allows remote attackers to inject arbitrary web script or HTML via code-atlantic · popup maker · CWE-79 | Medium6.1 | — | 1.6% | Aug 2, 2017 |
21Monitor | CVE-2022-4362No exploit | Popup Maker < 1.16.9 - Contributor+ Stored XSS via Shortcodecode-atlantic · popup maker · CWE-79 | Medium5.4 | — | 0.6% | Jan 2, 2023 |
21Monitor | CVE-2022-4381No exploit | Popup Maker < 1.16.9 - Contributor+ Stored XSS via Subscription Formcode-atlantic · popup maker · CWE-79 | Medium5.4 | — | 0.5% | Jan 2, 2023 |
21Monitor | CVE-2022-4509No exploit | Content Control < 1.1.10 - Contributor+ Stored XSScode-atlantic · content control · CWE-79 | Medium5.4 | — | 0.5% | Jan 23, 2023 |
21Monitor | CVE-2024-2336No exploit | Popup Maker – Popup for opt-ins, lead gen, & more <= 1.18.2 - Authenticated (Contributor+) Stored Cross-Site Scriptingcode-atlantic · popup maker · CWE-79 | Medium5.4 | — | 0.3% | Apr 9, 2024 |
21Monitor | CVE-2025-24746No exploit | WordPress Popup Maker plugin <= 1.20.2 - Cross Site Scripting (XSS) vulnerabilitycode-atlantic · popup maker · CWE-79 | Medium5.4 | — | 0.3% | Jan 24, 2025 |
21Monitor | CVE-2024-10583No exploit | Popup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popups Builder <= 1.20.2 - Authenticated (Contributor+) Stored Cross-Site Scripcode-atlantic · popup maker · CWE-79 | Medium5.4 | — | 0.3% | Dec 12, 2024 |
21Monitor | CVE-2024-7054No exploit | Popup Maker <= 1.19.0 - Authenticated (Contributor+) Stored Cross-Site Scriptingcode-atlantic · popup maker · CWE-79 | Medium5.4 | — | 0.3% | Aug 20, 2024 |
19Monitor | CVE-2022-3690No exploit | Popup Maker < 1.16.11 - Contributor+ Stored Cross Site Scriptingcode-atlantic · popup maker · CWE-79 | Medium4.8 | — | 0.7% | Nov 21, 2022 |
19Monitor | CVE-2024-5561No exploit | Popup Maker < 1.19.1 - Admin+ Stored XSScode-atlantic · popup maker · CWE-79 | Medium4.8 | — | 0.5% | Sep 9, 2024 |
14Monitor | CVE-2022-45819No exploit | WordPress Popup Maker plugin <= 1.17.1 - Broken Access Control vulnerabilitycode-atlantic · popup maker · CWE-862 | Low3.5 | — | 0.4% | Dec 13, 2024 |
- CVE-2019-1757439Monitor
An issue was discovered in the Popup Maker plugin before 1.8.13 for WordPress.
CriticalCVSS 9.1Proof of conceptEPSS 9%code-atlantic · popup makerOct 14, 2019
- CVE-2024-4735839Monitor
WordPress Popup Maker plugin <= 1.19.2 - Broken Access Control vulnerability
CriticalCVSS 9.8No exploitEPSS 0%code-atlantic · popup makerNov 1, 2024
- CVE-2022-110436Monitor
Popup Maker < 1.16.5 - Admin+ Stored Cross-Site Scripting
MediumCVSS 4.8Proof of conceptEPSS 56%code-atlantic · popup makerMay 9, 2022
- CVE-2022-4759730Monitor
WordPress Popup Maker Plugin <= 1.17.1 is vulnerable to Sensitive Data Exposure
HighCVSS 7.5No exploitEPSS 1%code-atlantic · popup makerDec 20, 2023
- CVE-2017-228424Monitor
Cross-site scripting vulnerability in Popup Maker prior to version 1.6.5 allows remote attackers to inject arbitrary web script or HTML via
MediumCVSS 6.1No exploitEPSS 2%code-atlantic · popup makerAug 2, 2017
- CVE-2022-436221Monitor
Popup Maker < 1.16.9 - Contributor+ Stored XSS via Shortcode
MediumCVSS 5.4No exploitEPSS 1%code-atlantic · popup makerJan 2, 2023
- CVE-2022-438121Monitor
Popup Maker < 1.16.9 - Contributor+ Stored XSS via Subscription Form
MediumCVSS 5.4No exploitEPSS 1%code-atlantic · popup makerJan 2, 2023
- CVE-2022-450921Monitor
Content Control < 1.1.10 - Contributor+ Stored XSS
MediumCVSS 5.4No exploitEPSS 0%code-atlantic · content controlJan 23, 2023
- CVE-2024-233621Monitor
Popup Maker – Popup for opt-ins, lead gen, & more <= 1.18.2 - Authenticated (Contributor+) Stored Cross-Site Scripting
MediumCVSS 5.4No exploitEPSS 0%code-atlantic · popup makerApr 9, 2024
- CVE-2025-2474621Monitor
WordPress Popup Maker plugin <= 1.20.2 - Cross Site Scripting (XSS) vulnerability
MediumCVSS 5.4No exploitEPSS 0%code-atlantic · popup makerJan 24, 2025
- CVE-2024-1058321Monitor
Popup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popups Builder <= 1.20.2 - Authenticated (Contributor+) Stored Cross-Site Scrip
MediumCVSS 5.4No exploitEPSS 0%code-atlantic · popup makerDec 12, 2024
- CVE-2024-705421Monitor
Popup Maker <= 1.19.0 - Authenticated (Contributor+) Stored Cross-Site Scripting
MediumCVSS 5.4No exploitEPSS 0%code-atlantic · popup makerAug 20, 2024
- CVE-2022-369019Monitor
Popup Maker < 1.16.11 - Contributor+ Stored Cross Site Scripting
MediumCVSS 4.8No exploitEPSS 1%code-atlantic · popup makerNov 21, 2022
- CVE-2024-556119Monitor
Popup Maker < 1.19.1 - Admin+ Stored XSS
MediumCVSS 4.8No exploitEPSS 0%code-atlantic · popup makerSep 9, 2024
- CVE-2022-4581914Monitor
WordPress Popup Maker plugin <= 1.17.1 - Broken Access Control vulnerability
LowCVSS 3.5No exploitEPSS 0%code-atlantic · popup makerDec 13, 2024