Extension WordPress
Vulnérabilités Optinly – Exit Intent, Newsletter Popups, Gamification & Opt-in Forms
Cette page rassemble les failles publiées pour Optinly – Exit Intent, Newsletter Popups, Gamification & Opt-in Forms, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Optinly – Exit Intent, Newsletter Popups, Gamification & Opt-in Forms
3 fiches
Optinly <= 1.0.18 – Missing Authorization
The Optinly – Exit Intent, Newsletter Popups, Gamification & Opt-in Forms plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 1.0.18. This makes…
*-1.0.18
1.0.19
21/06/2024
Optinly <= 1.0.18 – Missing Authorization to Plugin Settings Change
The Optinly plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on several AJAX actions in versions up to, and including, 1.0.18. This makes it possible for authenticated attackers, with subscriber-level permissions and…
*-1.0.18
1.0.19
12/10/2022
Optinly <= 1.0.15 – Cross-Site Request Forgery
The Optinly plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.15. This is due to missing or incorrect nonce validation on several of its functions. This makes it possible for unauthenticated…
*-1.0.15
1.0.16
12/10/2022
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.