{"api_version":"v1","generated_at":"2026-10-08T14:45:00+00:00","product":{"cve_count":2,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-sygnoos-popup-builder-wordpress-plugin-8e5ddde3e335","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Popup Builder (WordPress plugin)","next_cursor":null,"observations":[{"affected":"<= 4.1.11 \u2264 4.1.11","affected_versions_present":true,"cve_id":"CVE-2022-29495","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-29495","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-04-28T16:07:42.982Z","patch_url":"https://patchstack.com/database/vulnerability/popup-builder/wordpress-popup-builder-plugin-4-1-11-cross-site-request-forgery-csrf-leading-to-plugin-settings-update","primary_source":"","published":"2022-07-22T16:39:03.757Z"},{"affected":"<= 4.1.0 \u2264 4.1.0","affected_versions_present":true,"cve_id":"CVE-2022-32289","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-32289","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-04-28T16:07:43.931Z","patch_url":"https://patchstack.com/database/vulnerability/popup-builder/wordpress-popup-builder-plugin-4-1-0-cross-site-request-forgery-csrf-vulnerability-leading-to-popup-status-change","primary_source":"","published":"2022-07-21T15:29:30.376Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"Sygnoos"}}
