Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-32180 | The Poll Maker – Best WordPress Poll Plugin plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the ays_poll_create_author function in all versions up to, and including, 5.1.8. This makes it possible for unauthenticated attackers to extract email addresses by enumerating them one character at a time. |
Wed, 08 Apr 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Poll Maker – Best WordPress Poll Plugin <= 5.1.8 - Missing Authorization to Unauthenticated Email Enumeration |
Thu, 26 Feb 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:ays-pro:poll_maker:*:*:*:*:*:wordpress:*:* | |
| Metrics |
ssvc
|
Wed, 28 May 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ays-pro
Ays-pro poll Maker |
|
| Weaknesses | CWE-862 | |
| CPEs | cpe:2.3:a:ays-pro:poll_maker:*:*:*:*:free:wordpress:*:* | |
| Vendors & Products |
Ays-pro
Ays-pro poll Maker |
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2026-04-08T17:34:39.609Z
Reserved: 2024-04-10T16:11:23.125Z
Link: CVE-2024-3601
Updated: 2024-08-01T20:12:07.969Z
Status : Modified
Published: 2024-05-02T17:15:27.903
Modified: 2026-04-08T19:21:23.927
Link: CVE-2024-3601
No data.
OpenCVE Enrichment
No data.
EUVD