← WordPress Vulnerabilities
WordPress security by component

WordPress Survey & Poll – Quiz, Survey and Poll Plugin for

WordPress Survey & Poll – Quiz, Survey and Poll Plugin for is a WordPress component with 3 published CVE records in this archive. The latest tracked vulnerability was published Jan 30, 2025; the highest CVE/CNA score is 7.5.

Plugin slug: wp-survey-and-poll

CVE-2024-13596: WordPress Survey & Poll – Quiz, Survey and Poll Plugin for: SQL injection

WordPress Survey & Poll – Quiz, Survey and Poll Plugin for is affected by SQL injection. Exploitation requires at least contributor-level access. A successful request can alter database queries and expose or modify WordPress data.

PublishedJan 30, 2025
Safe version guidanceSee mitigation notes
Safe version
Jan 30, 2025 CVE-2024-13596
WordPress Survey & Poll – Quiz, Survey and Poll Plugin for: SQL injection
WordPress Survey & Poll – Quiz, Survey and Poll Plugin for is affected by SQL injection. Exploitation requires at least contributor-level access. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE6.5
NVD6.5
Jan 07, 2025 CVE-2024-12528
WordPress Survey & Poll – Quiz, Survey and Poll Plugin for: Cross-site scripting
WordPress Survey & Poll – Quiz, Survey and Poll Plugin for is affected by cross-site scripting. Exploitation requires at least contributor-level access. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVE6.4
NVDPending
Feb 26, 2015 CVE-2015-2090
Wp Survey And Poll: SQL injection
Wp Survey And Poll is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE7.5
NVD7.5