A vulnerability was found in Popup Box Plugin up to 5.4.x on WordPress. It has been declared as problematic . Affected by this vulnerability is the function add_or_edit_popupbox . Such manipulation leads to cross-site request forgery. This vulnerability is listed as CVE-2025-15611 . The attack may be performed from remote. There is no available exploit. It is recommended to upgrade the affected component.