Chop Chop is a focused vendor with a niche product portfolio centered on mobile applications, including its Coming Soon and Pop Up offerings. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Chop Chop over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-31432HIGH Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Chop Chop Pop-Up Chop Chop pop-up allows PHP Local File Inc | Mar 28, 2025 | 7.5 | 20 | NO | NO |
CVE-2022-41638MEDIUM Auth. Stored Cross-Site Scripting (XSS) in Pop-Up Chop Chop plugin <= 2.1.7 on WordPress. | Oct 21, 2022 | 5.4 | 20 | NO | NO |
CVE-2023-37893MEDIUM Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Chop-Chop Coming Soon Chop Chop plugin <= 2.2.4 versions. | Sep 1, 2023 | 6.1 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Chop Chop.
Media articles that mention a CVE ID that affects a product developed by Chop Chop — matched by CVE ID, not by vendor name.