← WordPress Vulnerabilities
WordPress security by component

Social Polls By Opinionstage

Social Polls By Opinionstage is a WordPress component with 5 published CVE records in this archive. The latest tracked vulnerability was published Jan 16, 2026; the highest CVE/CNA score is 7.5.

Plugin slug: social-polls-by-opinionstage

CVE-2019-25297: Social Polls By Opinionstage: Cross-site scripting

Social Polls By Opinionstage is affected by cross-site scripting. The vulnerable path is reachable without authentication. Injected script can execute in the affected site's origin when the vulnerable output is viewed.

PublishedJan 16, 2026
Safe version guidanceSee mitigation notes
Safe version
Jan 16, 2026 CVE-2019-25297
Social Polls By Opinionstage: Cross-site scripting
Social Polls By Opinionstage is affected by cross-site scripting. The vulnerable path is reachable without authentication. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVE5.1
NVDPending
Dec 24, 2025 CVE-2025-68594
Poll, Survey & Quiz Maker Plugin by Opinion Stage: A security weakness
Poll, Survey & Quiz Maker Plugin by Opinion Stage is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE5.3
NVDPending
Nov 27, 2025 CVE-2025-13143
Poll, Survey & Quiz Maker Plugin by Opinion Stage: Cross-site request forgery
Poll, Survey & Quiz Maker Plugin by Opinion Stage is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
See mitigation notes
CVE4.3
NVDPending
Aug 28, 2025 CVE-2025-53328
Poll, Survey & Quiz Maker Plugin by Opinion Stage: Filesystem traversal
Poll, Survey & Quiz Maker Plugin by Opinion Stage is affected by filesystem traversal. Exposure depends on how the affected operation is made reachable by the site. A crafted path can escape the intended directory and reach files or directories elsewhere on the server.
See mitigation notes
CVE7.5
NVDPending
Jun 17, 2025 CVE-2025-3880
Poll, Survey & Quiz Maker Plugin by Opinion Stage: A security weakness
Poll, Survey & Quiz Maker Plugin by Opinion Stage is affected by a security weakness. Exploitation requires at least contributor-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVDPending