Description
WordPress Plugin Popup Maker-Popup for opt-ins, lead gen, & more is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin Popup Maker-Popup for opt-ins, lead gen, & more version 1.8.11 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.8.13 or latest
References
https://blog.redyops.com/wordpress-plugin-popup-maker/
https://plugins.svn.wordpress.org/popup-maker/trunk/readme.txt
Related Vulnerabilities
Drupal Core 4.7.x Multiple Vulnerabilities (4.7.0 - 4.7.1)
Python Uncontrolled Recursion Vulnerability (CVE-2023-36632)
CubeCart Permissions, Privileges, and Access Controls Vulnerability (CVE-2009-3904)
WordPress Plugin Tutor LMS-eLearning and online course solution Multiple Vulnerabilities (1.7.6)