← WordPress Vulnerabilities
WordPress security by component

FireBox Popups – Increase Sales and Grow Your Email List

FireBox Popups – Increase Sales and Grow Your Email List is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published Jun 18, 2026; the highest CVE/CNA score is 6.5.

Plugin slug: firebox

CVE-2026-12120: FireBox Popups – Increase Sales and Grow Your Email List: Sensitive information exposure

FireBox Popups – Increase Sales and Grow Your Email List is affected by sensitive information exposure. The vulnerable path is reachable without authentication. Successful exploitation can disclose data that should not be available to the caller. The published affected range is <= 3.1.7.

PublishedJun 18, 2026
Known safe version> 3.1.7
Safe version
Jun 18, 2026 CVE-2026-12120
FireBox Popups – Increase Sales and Grow Your Email List: Sensitive information exposure
FireBox Popups – Increase Sales and Grow Your Email List is affected by sensitive information exposure. The vulnerable path is reachable without authentication. Successful exploitation can disclose data that should not be available to the caller. The published affected range is <= 3.1.7.
> 3.1.7
CVE5.3
NVDPending
Dec 09, 2025 CVE-2025-67545
FireBox: Cross-site scripting
FireBox is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVE6.5
NVDPending