Easy Popups – Beautiful, Responsive Popups for Lead Capture & Announcements Security & Risk Analysis

wordpress.org/plugins/easy-popups

Create beautiful, responsive popups in minutes. Add forms, videos, smart triggers, and precise display rules — all inside WordPress.

30 active installs v1.5.2 PHP 7.2+ WP 5.0+ Updated Oct 6, 2025
modalnewsletteropt-inpop-uppopup
99
A · Safe
CVEs total1
Unpatched0
Last CVEFeb 14, 2025
Safety Verdict

Is Easy Popups – Beautiful, Responsive Popups for Lead Capture & Announcements Safe to Use in 2026?

Generally Safe

Score 99/100

Easy Popups – Beautiful, Responsive Popups for Lead Capture & Announcements has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: Feb 14, 2025Updated 6mo ago
Risk Assessment

The "easy-popups" v1.5.2 plugin exhibits a mixed security posture. On the positive side, it demonstrates strong adherence to secure coding practices with an extremely high rate of prepared SQL statements and properly escaped output. The plugin also incorporates nonce and capability checks, and has a clean history with no currently unpatched CVEs, indicating proactive maintenance. This suggests a generally robust security foundation.

Key Concerns

  • Use of unserialize function
  • High severity taint flow found
  • Bundled outdated library (Freemius v1.0)
  • Past XSS vulnerability
Vulnerabilities
1

Easy Popups – Beautiful, Responsive Popups for Lead Capture & Announcements Security Vulnerabilities

CVEs by Year

1 CVE in 2025
2025
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2025-26774medium · 6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Responsive Modal Builder for High Conversion – Easy Popups <= 1.5.0 - Reflected Cross-Site Scripting

Feb 14, 2025 Patched in 1.5.1 (13d)
Code Analysis
Analyzed Mar 16, 2026

Easy Popups – Beautiful, Responsive Popups for Lead Capture & Announcements Code Analysis

Dangerous Functions
3
Raw SQL Queries
2
38 prepared
Unescaped Output
4
717 escaped
Nonce Checks
4
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
2

Dangerous Functions Found

unserialize$images = unserialize( $popup['images'] );admin\views\pages\edit.php:36
unserializereturn unserialize( $meta_value );classes\class-easy-popups-sql.php:553
unserialize$images = ( isset( $popup['images'] ) && is_serialized( $popup['images'] ) ? array_values( unserialifrontend\views\popups.php:219

Bundled Libraries

Select2Freemius1.0

SQL Query Safety

95% prepared40 total queries

Output Escaping

99% escaped721 total outputs
Data Flows
1 unsanitized

Data Flow Analysis

5 flows1 with unsanitized paths
<popups> (admin\views\pages\popups.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Easy Popups – Beautiful, Responsive Popups for Lead Capture & Announcements Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 16
actionafter_uninstallclasses\class-easy-popups-activation.php:14
actioninitclasses\class-easy-popups-activation.php:16
filterwpmu_drop_tablesclasses\class-easy-popups-activation.php:17
actionadmin_enqueue_scriptsclasses\class-easy-popups-admin.php:8
actionadmin_initclasses\class-easy-popups-admin.php:10
actionadmin_menuclasses\class-easy-popups-admin.php:12
actionadmin_headclasses\class-easy-popups-admin.php:13
filterset-screen-optionclasses\class-easy-popups-admin.php:14
actionadmin_noticesclasses\class-easy-popups-admin.php:20
actionwp_enqueue_scriptsclasses\class-easy-popups-frontend.php:6
actionwp_footerclasses\class-easy-popups-frontend.php:7
actioninitclasses\class-easy-popups-language.php:6
actioninitclasses\class-easy-popups-language.php:7
actioninitclasses\class-easy-popups-language.php:8
actioninitclasses\class-easy-popups-sql.php:11
actionplugins_loadedeasy-popups.php:100
Maintenance & Trust

Easy Popups – Beautiful, Responsive Popups for Lead Capture & Announcements Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedOct 6, 2025
PHP min version7.2
Downloads5K

Community Trust

Rating94/100
Number of ratings7
Active installs30
Developer Profile

Easy Popups – Beautiful, Responsive Popups for Lead Capture & Announcements Developer Profile

Rock Solid

7 plugins · 17K total installs

73
trust score
Avg Security Score
91/100
Avg Patch Time
223 days
View full developer profile
Detection Fingerprints

How We Detect Easy Popups – Beautiful, Responsive Popups for Lead Capture & Announcements

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/easy-popups/admin/build/free.css/wp-content/plugins/easy-popups/admin/build/free.js/wp-content/plugins/easy-popups/lib/datetimepicker/jquery.datetimepicker.min.css/wp-content/plugins/easy-popups/lib/datetimepicker/jquery.datetimepicker.full.min.js/wp-content/plugins/easy-popups/lib/select2/select2.min.css/wp-content/plugins/easy-popups/lib/select2/select2.full.min.js
Script Paths
/wp-content/plugins/easy-popups/admin/build/free.js/wp-content/plugins/easy-popups/lib/datetimepicker/jquery.datetimepicker.full.min.js/wp-content/plugins/easy-popups/lib/select2/select2.full.min.js
Version Parameters
easy-popups/admin/build/free.css?ver=easy-popups/admin/build/free.js?ver=easy-popups/lib/datetimepicker/jquery.datetimepicker.min.css?ver=easy-popups/lib/datetimepicker/jquery.datetimepicker.full.min.js?ver=easy-popups/lib/select2/select2.min.css?ver=easy-popups/lib/select2/select2.full.min.js?ver=

HTML / DOM Fingerprints

CSS Classes
easy-popups-pro-wrapper
HTML Comments
Easy Popups ProEasy Popups Free
Data Attributes
data-easy-popups-close-btn-textdata-easy-popups-close-delaydata-easy-popups-close-on-click-outsidedata-easy-popups-close-on-escdata-easy-popups-close-on-overlay-clickdata-easy-popups-cookie-expire+47 more
JS Globals
EASY_POPUPS
REST Endpoints
/wp-json/easy-popups/v1/settings/wp-json/easy-popups/v1/popups
Shortcode Output
[easy_popups_popup id=""[easy_popups_form id=""[easy_popups_content id=""
FAQ

Frequently Asked Questions about Easy Popups – Beautiful, Responsive Popups for Lead Capture & Announcements