WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in Optinly – Exit Intent, Newsletter Popups, Gamification & Opt-in Forms

Capture more leads & increase conversions with Optinly. Use 75+ templates and advanced triggering options to create highly converting popup campaigns!

3Reported vulnerabilities
8.8Highest CVSS score
1.0.20Latest version
700+Active installs

What to do now

Update Optinly – Exit Intent, Newsletter Popups, Gamification & Opt-in Forms to 1.0.19 or later. 3 of these have a fixed version available. Updating resolves them.

Plugin last updated: July 16, 2024 / Tested up to WordPress: 6.4.10 / View on wordpress.org

This plugin has not been updated in over two years. New vulnerabilities may never be fixed. Consider an alternative.

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2022-41134 High 8.8 0.3% 1.0.15 and earlier 1.0.16 October 12, 2022
CVE-2022-41647 High 7.1 1.0.18 and earlier 1.0.19 October 12, 2022
CVE-2024-37220 Medium 5.3 0.4% 1.0.18 and earlier 1.0.19 June 21, 2024

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.