CVE-2025-50027
Login & Register Customizer – Popup | Slider | Inline | WooCommerce
Minimum safe version
2.9.5
Update to 2.9.5 or later to address 14 fixable vulnerabilities
WordPress Login/Signup Popup Plugin <= 2.8.5 is vulnerable to Cross Site Scripting (XSS)
CVE-2024-5665
CVE-2024-5324
Login/Signup Popup < 2.4 - Settings Reset via CSRF
WordPress Login/Signup Popup Plugin <= 2.3 is vulnerable to Cross Site Request Forgery (CSRF)
Login/Signup Popup <= 2.3 - Cross-Site Request Forgery to Settings Reset
CVE-2020-36715
Login/Signup Popup < 1.5 - Authenticated Stored Cross-Site Scripting (XSS)
Login/Signup Popup < 2.2 - Reflected Cross-Site Scripting
Login/Signup Popup < 1.5 - Missing Authorization
Login/Signup Popup ( Inline Form + Woocommerce ) <= 2.1 - Reflected Cross-Site Scripting
WordPress Login/Signup Popup plugin <= 1.4 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability
WordPress Login/Signup Popup plugin <= 2.1 - Reflected Cross-Site Scripting (XSS) vulnerability
CVE-2022-0215