Description
WordPress Plugin WP Popup Banners [only if downloaded via the vendor website] contains suspicious code. Attackers can exploit this issue to perform a variety of actions. Successful attacks will compromise the affected application and possibly the webserver or computer. WordPress Plugin WP Popup Banners version 1.2.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.2.4 or latest
References
Related Vulnerabilities
SharePoint CVE-2022-35823 Vulnerability (CVE-2022-35823)
WordPress Plugin Sendit WP Newsletter SQL Injection (2.5.1)
MediaWiki Improper Handling of Exceptional Conditions Vulnerability (CVE-2020-25869)
WordPress Plugin Scroll Baner Cross-Site Request Forgery (1.0)
WordPress Plugin Block wp-login Cross-Site Request Forgery (1.3.0)