Extension WordPress

Vulnérabilités Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content

Cette page rassemble les failles publiées pour Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content, leurs plages de versions affectées et les correctifs signalés dans la base locale.

5Vulnérabilités
0Critiques
5Avec correctif
7,2CVSS maximal

Historique de sécurité

CVE et vulnérabilités de Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content

5 fiches

CVE-2025-68508 Moyenne · 5,3
Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content

Brave <= 0.8.3 – Missing Authorization

The Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including,…

Versions affectées

*-0.8.3

Correctif

0.8.4

Publication

23/12/2025

CVE-2024-43337 Moyenne · 4,3
Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content

Brave Popup Builder <= 0.7.0 – Cross-Site Request Forgery

The Brave Popup Builder plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 0.7.0. This is due to missing or incorrect nonce validation on the bravepop_ajax_zoho_init_token() function. This makes it possible for…

Versions affectées

*-0.7.0

Correctif

0.7.1

Publication

16/08/2024

CVE-2024-35655 Moyenne · 4,4
Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content

Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content <= 0.6.9 – Authenticated (Admin+) Stored Cross-Site Scripting

The Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 0.6.9 due to insufficient input…

Versions affectées

*-0.6.9

Correctif

0.7.0

Publication

03/06/2024

CVE-2024-30453 Élevée · 7,2
Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content

Brave Popup Builder <= 0.6.5 – Unauthenticated Server-Side Request Forgery

The Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 0.6.5. This makes it possible for unauthenticated attackers…

Versions affectées

*-0.6.5

Correctif

0.6.6

Publication

28/03/2024

CVE-2023-51534 Moyenne · 4,4
Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content

Brave Popup Builder <= 0.6.2 – Authenticated (Administrator+) Stored Cross-Site Scripting

The Brave – Create Popup, Optins, Lead Generation, Survey, Sticky Elements & Interactive Content plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 0.6.2 due to insufficient input…

Versions affectées

*-0.6.2

Correctif

0.6.3

Publication

27/12/2023

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités