CVE Tools

Poll Maker

21 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Poll Maker, a product in the web cms plugins space. Use it to gauge the current risk picture and drill into individual advisories.

Poll Maker CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Poll Maker CVEs per month
MonthCVEs
2024-102
2024-111
2024-122
2025-013
2025-021
2025-031
2025-041
2025-051
2025-060
2025-070
2025-080
2025-091
2025-100
2025-110
2025-120
2026-010
2026-020
2026-030
2026-040
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 21 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • High524%
  • Medium1676%

Latest CVEs

The 15 most recently published vulnerabilities affecting Poll Maker.

  1. CVE-2025-57954WordPress Poll Maker Plugin <= 6.0.2 - Cross Site Scripting (XSS) Vulnerability6.5
  2. CVE-2025-47545WordPress Poll Maker plugin <= 5.7.7 - Race Condition Vulnerability5.3
  3. CVE-2025-24577WordPress Poll Maker plugin <= 5.5.0 - Broken Access Control vulnerability6.5
  4. CVE-2024-13602Poll Maker < 5.5.4 - Admin+ Stored XSS4.8
  5. CVE-2025-26971WordPress Poll Maker <= 5.6.5 - SQL Injection vulnerability7.6
  6. CVE-2024-56277WordPress Poll Maker Plugin < 5.5.5 - HTML Injection vulnerability5.3
  7. CVE-2024-56295WordPress Poll Maker plugin <= 5.5.6 - Broken Access Control vulnerability6.5
  8. CVE-2023-45766WordPress Poll Maker plugin <= 4.7.1 - Broken Access Control vulnerability5.3
  9. CVE-2023-50904WordPress Poll Maker plugin <= 4.8.0 - Broken Access Control vulnerability5.3
  10. CVE-2024-12115Poll Maker <= 5.5.4 - Cross-Site Request Forgery to Poll Duplication4.3
  11. CVE-2024-9874WordPress Poll Maker Plugin <= 5.4.6 - Authenticated (Administrator+) Time-Based SQL Injection4.9
  12. CVE-2024-9462Poll Maker – Versus Polls, Anonymous Polls, Image Polls <= 5.4.6 - Authenticated (Administrator+) Stored Cross-Site Scripting via Poll Settings5.5
  13. CVE-2024-9475Poll Maker – Versus Polls, Anonymous Polls, Image Polls <= 5.4.6 - Authenticated (Administrator+) SQL Injection via Order_by Parameter4.9
  14. CVE-2024-3601Poll Maker – Best WordPress Poll Plugin <= 5.1.8 - Missing Authorization to Unauthenticated Email Enumeration5.3
  15. CVE-2024-3600Poll Maker – Best WordPress Poll Plugin <= 5.1.8 - Missing Authorization to Unauthenticated Stored Cross-Site Scripting7.2

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store