CVE-2025-10861SSRF (Server-Side Request Forgery), non authentifié, dans Popup builder with Gamification, Multi-Step Popups, Page-Level Targeting, and WooCommerce Triggers (<= 2.1.4)
- Plugin
- Popup builder with Gamification, Multi-Step Popups, Page-Level Targeting, and WooCommerce Triggers
- Versions
- <= 2.1.4
- CVSS
- 7.5/10
- Correctif
- 2.1.5
23 oct. 2025
Lire