CVE-2025-57931: Ays Pro Popup Box

Medium severity, CVSS 5.3. EPSS: 0.1% chance of exploitation in the next 30 days.

Cross-Site Request Forgery (CSRF) vulnerability in Ays Pro Popup box ays-popup-box allows Cross Site Request Forgery.This issue affects Popup box: from n/a through <= 5.5.4.

Affected products

  • Ays Pro Popup Box: up to and including 5.5.4

Published 2025-10-29. Last modified 2026-10-08.