Poll Maker
cpe:2.3:a:ays-pro:poll_maker:*:*:*:*:wordpress:*:*
- < 5.5.5
A vulnerability exists in the WordPress Poll Maker plugin, specifically in versions prior to 5.5.5, due to improper encoding or escaping of output. This flaw allows for content injection, where a malicious actor could insert their own content into the pages and posts of a WordPress site. Such an injection could be exploited to add phishing pages, for example.
Exploitation of this vulnerability could lead to unauthorized content being injected into a WordPress site's pages or posts, with the potential to create phishing pages on the site.
Users of the WordPress Poll Maker plugin should update to version 5.5.5 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.