Extension WordPress
Vulnérabilités Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content
Cette page rassemble les failles publiées pour Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content
5 fiches
Brave <= 0.8.3 – Missing Authorization
The Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including,…
*-0.8.3
0.8.4
23/12/2025
Brave Popup Builder <= 0.7.0 – Cross-Site Request Forgery
The Brave Popup Builder plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 0.7.0. This is due to missing or incorrect nonce validation on the bravepop_ajax_zoho_init_token() function. This makes it possible for…
*-0.7.0
0.7.1
16/08/2024
Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content <= 0.6.9 – Authenticated (Admin+) Stored Cross-Site Scripting
The Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 0.6.9 due to insufficient input…
*-0.6.9
0.7.0
03/06/2024
Brave Popup Builder <= 0.6.5 – Unauthenticated Server-Side Request Forgery
The Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 0.6.5. This makes it possible for unauthenticated attackers…
*-0.6.5
0.6.6
28/03/2024
Brave Popup Builder <= 0.6.2 – Authenticated (Administrator+) Stored Cross-Site Scripting
The Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 0.6.2 due to insufficient input…
*-0.6.2
0.6.3
27/12/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.