Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Popup Box allows Cross Site Request Forgery. This issue affects Popup Box: from n/a through 3.2.4.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-3903 | Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Popup Box allows Cross Site Request Forgery. This issue affects Popup Box: from n/a through 3.2.4. |
Fixes
Solution
Update the WordPress Popup Box wordpress plugin to the latest available version (at least 3.2.5).
Workaround
No workaround given by the vendor.
References
History
Fri, 24 Jan 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Popup Box allows Cross Site Request Forgery. This issue affects Popup Box: from n/a through 3.2.4. | |
| Title | WordPress Popup Box Plugin <= 3.2.4 - Cross Site Request Forgery (CSRF) vulnerability | |
| Weaknesses | CWE-352 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-02-12T20:01:17.725Z
Reserved: 2025-01-23T14:52:31.177Z
Link: CVE-2025-24711
No data.
Status : Received
Published: 2025-01-24T18:15:44.330
Modified: 2025-01-24T18:15:44.330
Link: CVE-2025-24711
No data.
OpenCVE Enrichment
Updated: 2025-07-12T15:26:14Z
EUVD