WPOptin – AI-Powered Top Bars, PopUps & Lead Generation

Vulnerabilities 8Slug wpoptinLatest version 2.0.7WordPress.org →Closed
High 7.1 Unfixed Closed
2025-03-03≤ 2.0.8

CVE-2025-25118

Medium 6.3 Closed
2024-10-16< 1.2.4

Freemius SDK <= 2.4.2 - Missing Authorization Checks

N/A Closed
2023-07-18< 1.2.7

WordPress Top Bar – PopUps – by WPOptin Plugin <= 1.2.6 is vulnerable to Cross Site Scripting (XSS)

N/A Closed
2022-03-04< 1.2.1

Freemius SDK <= 2.4.2 - Missing Authorization Checks

N/A Closed
2022-02-28< 1.2.4

WordPress Top Bar – PopUps – by WPOptin plugin <= 1.2.3 - Sensitive Information Disclosure vulnerability

N/A Closed
2022-02-28< 1.2.4

WordPress Top Bar – PopUps – by WPOptin plugin <= 1.2.3 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability