CVE-2017-18520: Wp-Kama Democracy Poll

Medium severity, CVSS 6.1. EPSS: 0.9% chance of exploitation in the next 30 days.

The democracy-poll plugin before 5.4 for WordPress has XSS via update_l10n in admin/class.DemAdminInit.php.

Affected products

  • Wp-Kama Democracy Poll: before 5.4 (fixed in 5.4)

Published 2019-08-20. Last modified 2026-06-17.