Description
WordPress Plugin WP Post Popup is prone to a directory traversal vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue can allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin WP Post Popup version 2.1.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.1.2 or latest
References
Related Vulnerabilities
Atlassian Confluence CVE-2024-21683 Vulnerability (CVE-2024-21683)
WordPress Plugin Zeno Font Resizer Cross-Site Scripting (1.7.9)
WordPress Plugin Lifeline Donation Security Bypass (1.2.6)
WordPress Plugin Contact Bank-Contact Form Builder for WordPress Cross-Site Scripting (3.0.30)
WordPress Plugin Social Share Icons & Social Share Buttons Unspecified Vulnerability (1.4)