Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-31432 2 Chop-chop, Wordpress 2 Pop-up Chop Chop, Wordpress 2026-04-01 N/A
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Chop Chop Pop-Up Chop Chop pop-up allows PHP Local File Inclusion.This issue affects Pop-Up Chop Chop: from n/a through <= 2.1.7.
CVE-2022-41638 1 Chop-chop 1 Pop-up Chop Chop 2025-02-20 5.4 Medium
Auth. Stored Cross-Site Scripting (XSS) in Pop-Up Chop Chop plugin <= 2.1.7 on WordPress.