cabrerahector/wordpress-popular-posts

cabrerahector/wordpress-popular-posts

Releases166
Frequency1 month 5 days
Last Release
Stars282
WP Popular Posts - A highly customizable WordPress widget that displays your most popular posts.

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH

External initialization of trusted variables or data stores vulnerability exists in WordPress Popular Posts 6.0.5 and earlier, therefore the vulnerable product accepts untrusted external inputs to update certain internal variables. As a result, the number of views for an article may be manipulated through a crafted input.

5.5 MEDIUM3.5 LOW

Authenticated Persistent Cross-Site Scripting (XSS) vulnerability in WordPress Popular Posts plugin (versions <= 5.3.3). Vulnerable at &widget-wpp[2][post_type].