CVE-2024-56277: WordPress Poll Maker Plugin < 5.5.5 - HTML Injection vulnerability
Published Jan 21, 2025
·Updated
Improper Encoding or Escaping of Output vulnerability in Ays Pro Poll Maker poll-maker.This issue affects Poll Maker: from n/a through < 5.5.5.
Affected Software
3 affected components
Poll Maker Team Poll Maker
WordPress Poll Maker plugin<5.5.5
ays-pro Poll Maker Wordpress<5.5.5
Remediation
Information
Update the WordPress Poll Maker wordpress plugin to the latest available version (at least 5.5.5).
Event History
Jan 21, 2025
CVE Published
via MITRE·01:40 PM
Data Sourced
via MITRE·01:40 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-56277?
CVE-2024-56277 has a medium severity rating due to improper encoding or escaping of output.
2
How do I fix CVE-2024-56277?
To fix CVE-2024-56277, ensure you update Poll Maker or the WordPress Poll Maker Plugin to the latest version.
3
What versions are affected by CVE-2024-56277?
CVE-2024-56277 affects Poll Maker from an unspecified version and the WordPress Poll Maker Plugin up to version 5.5.5.
4
What type of vulnerability is CVE-2024-56277?
CVE-2024-56277 is classified as an Improper Encoding or Escaping of Output vulnerability.
5
Who is impacted by CVE-2024-56277?
Users of Poll Maker Team Poll Maker and the WordPress Poll Maker Plugin are impacted by CVE-2024-56277.