code-atlantic CVE Vulnerabilities & Metrics

Focus on code-atlantic vulnerabilities and metrics.

Last updated: 08 Mar 2025, 23:25 UTC

About code-atlantic Security Exposure

This page consolidates all known Common Vulnerabilities and Exposures (CVEs) associated with code-atlantic. We track both calendar-based metrics (using fixed periods) and rolling metrics (using gliding windows) to give you a comprehensive view of security trends and risk evolution. Use these insights to assess risk and plan your patching strategy.

For a broader perspective on cybersecurity threats, explore the comprehensive list of CVEs by vendor and product. Stay updated on critical vulnerabilities affecting major software and hardware providers.

Global CVE Overview

Total code-atlantic CVEs: 9
Earliest CVE date: 02 Aug 2017, 16:29 UTC
Latest CVE date: 01 Nov 2024, 15:15 UTC

Latest CVE reference: CVE-2024-47358

Rolling Stats

30-day Count (Rolling): 0
365-day Count (Rolling): 2

Calendar-based Variation

Calendar-based Variation compares a fixed calendar period (e.g., this month versus the same month last year), while Rolling Growth Rate uses a continuous window (e.g., last 30 days versus the previous 30 days) to capture trends independent of calendar boundaries.

Variations & Growth

Month Variation (Calendar): 0%
Year Variation (Calendar): 100.0%

Month Growth Rate (30-day Rolling): 0.0%
Year Growth Rate (365-day Rolling): 100.0%

Monthly CVE Trends (current vs previous Year)

Annual CVE Trends (Last 20 Years)

Critical code-atlantic CVEs (CVSS ≥ 9) Over 20 Years

CVSS Stats

Average CVSS: 1.58

Max CVSS: 6.4

Critical CVEs (≥9): 0

CVSS Range vs. Count

Range Count
0.0-3.9 7
4.0-6.9 2
7.0-8.9 0
9.0-10.0 0

CVSS Distribution Chart

Top 5 Highest CVSS code-atlantic CVEs

These are the five CVEs with the highest CVSS scores for code-atlantic, sorted by severity first and recency.

All CVEs for code-atlantic

CVE-2024-47358 code-atlantic vulnerability CVSS: 0 01 Nov 2024, 15:15 UTC

Missing Authorization vulnerability in Popup Maker allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Popup Maker: from n/a through 1.19.2.

CVE-2024-5561 code-atlantic vulnerability CVSS: 0 09 Sep 2024, 06:15 UTC

The Popup Maker WordPress plugin before 1.19.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

CVE-2022-47597 code-atlantic vulnerability CVSS: 0 20 Dec 2023, 18:15 UTC

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Popup Maker Popup Maker – Popup for opt-ins, lead gen, & more.This issue affects Popup Maker – Popup for opt-ins, lead gen, & more: from n/a through 1.17.1.

CVE-2022-4381 code-atlantic vulnerability CVSS: 0 02 Jan 2023, 22:15 UTC

The Popup Maker WordPress plugin before 1.16.9 does not validate and escape one of its shortcode attributes, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks

CVE-2022-4362 code-atlantic vulnerability CVSS: 0 02 Jan 2023, 22:15 UTC

The Popup Maker WordPress plugin before 1.16.9 does not validate and escape one of its shortcode attributes, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks

CVE-2022-3690 code-atlantic vulnerability CVSS: 0 21 Nov 2022, 11:15 UTC

The Popup Maker WordPress plugin before 1.16.11 does not sanitise and escape some of its Popup options, which could allow users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks, which could be used against admins

CVE-2022-1104 code-atlantic vulnerability CVSS: 3.5 09 May 2022, 17:15 UTC

The Popup Maker WordPress plugin before 1.16.5 does not sanitise and escape some of its Popup settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

CVE-2019-17574 code-atlantic vulnerability CVSS: 6.4 14 Oct 2019, 14:15 UTC

An issue was discovered in the Popup Maker plugin before 1.8.13 for WordPress. An unauthenticated attacker can partially control the arguments of the do_action function to invoke certain popmake_ or pum_ methods, as demonstrated by controlling content and delivery of popmake-system-info.txt (aka the "support debug text file").

CVE-2017-2284 code-atlantic vulnerability CVSS: 4.3 02 Aug 2017, 16:29 UTC

Cross-site scripting vulnerability in Popup Maker prior to version 1.6.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.