CVE-2013-1401: Cardozatechnologies WordPress Poll

Critical severity, CVSS 9.8. EPSS: 5% chance of exploitation in the next 30 days.

Multiple security bypass vulnerabilities in the editAnswer, deleteAnswer, addAnswer, and deletePoll functions in WordPress Poll Plugin 34.5 for WordPress allow a remote attacker to add, edit, and delete an answer and delete a poll.

Affected products

Published 2020-02-13. Last modified 2026-06-16.