Back to CVE List

CVE-2026-14603

Vulnerability Description

The WowOptin: Next-Gen Popup Maker WordPress plugin before 1.4.38 does not have proper authorization on a REST endpoint, allowing unauthenticated users to disable all of the site's opt-in forms and insert new template-based opt-in rows into the database.

Vulnerability Details

Published Date
Last Modified
Source
NVD
Vendor
Unknown
Product
WowOptin: Next-Gen Popup Maker

External References

Discussion (0)

Add Comment

No comments yet. Be the first!