CVE-2024-32601: WordPress Popup Anything

Medium severity, CVSS 5.3. EPSS: 0.4% chance of exploitation in the next 30 days.

Missing Authorization vulnerability in WP OnlineSupport, Essential Plugin Popup Anything.This issue affects Popup Anything: from n/a through 2.8.

Affected products

Published 2024-04-18. Last modified 2026-06-17.