Description
WordPress Plugin WP Post Popup is prone to a directory traversal vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue can allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin WP Post Popup version 2.1.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.1.2 or latest
References
Related Vulnerabilities
Oracle Database Server CVE-2023-22074 Vulnerability (CVE-2023-22074)
WordPress Plugin Global Flash Galleries Cross-Site Scripting (0.13.4)
Drupal Core 6.x Multiple Cross-Site Scripting Vulnerabilities (6.0)
Moodle Improper Restriction of Excessive Authentication Attempts Vulnerability (CVE-2025-67853)