Crowdsignal Dashboard – Polls, Surveys & more

Crowdsignal Dashboard – Polls, Surveys & more has 9 disclosed vulnerabilities in the WordSec catalog, reported between 2013 and 2024; all 9 are fixed as of September 2026. Their average CVSS score is 5.8, and the most serious one scores 7.1 out of 10. Severity breakdown: 0 critical and 1 high. 2023 was the busiest year with 2 disclosures.

The most common weakness is Cross-Site Scripting, behind 5 of the records (56%). Other recurring categories include Cross-Site Request Forgery (CSRF), Missing Authorization.

Every one of the 9 issues recorded for Crowdsignal Dashboard – Polls, Surveys & more has a vendor fix available, so running the current release closes all known holes.

5 independent researchers contributed these findings, most of them (3) reported by Rafie Muhammad. Crowdsignal Dashboard – Polls, Surveys & more is installed on roughly 200,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.4.

Strategic Overview

Avg CVSSMedium
5.8/ 10
Patch Coverage100%
Open

0

Fixed

9

Get automatic notifications for all Crowdsignal Dashboard – Polls, Surveys & more vulnerabilities before they are exploited.

Highest severity on recordCVSS 7.1

Crowdsignal Dashboard < 2.0.21 - Cross-Site Request Forgery

Read the full analysis

Vulnerability Records

9 records
Crowdsignal Dashboard – Polls, Surveys & more banner
Latestv3.1.8

Crowdsignal Dashboard – Polls, Surveys & more

Automattic

Author

Automattic

2.7(34)
54/100
Last Updated
2026-07-15 (2mo ago)
Active Installs
200,000+
Downloads
1,305,509
Requires WP
5.5+
Requires PHP
5.6+
Tested up to
WP 7.0.4
Created
2008-10-15 (18y ago)

The Crowdsignal Dashboard plugin allows you to create and manage polls, surveys, quizzes, and ratings from within your WordPress admin. See all your projects in one place, be they surveys, quizzes and polls made on Crowdsignal.com or any of our poll and survey blocks using our Crowdsignal Forms plugin. With just one click view all results for your responses as they come in to analyze responses in real time and export your results everywhere! The Block Editor Are you using the new block editor for WordPress? Our other plugin, Crowdsignal Forms provides a number of blocks for your post editor that allow you to gather actionable feedback from your audience: * Poll: Create polls and get your audience’s opinion. * Survey Embed: Create surveys in minutes with 14 question types and embed them into your page. * Feedback Button: A floating and always visible button that allows your audience to share feedback anytime. * Measure NPS: Calculate your Net Promoter Score! Collect feedback and track customer satisfaction over time. * Voting: Allow your audience to rate your work or express their opinion. * Applause: Let your audience cheer with a big round of applause. Learn more about the Crowdsignal Forms plugin here, and on crowdsignal.com. Want to help translate the plugin or keep an existing translation up-to-date? Head on over to the translation site. Some strings are not translated when polls and surveys are embedded. You will have to translate them using a language pack on Crowdsignal.com. Development of the plugin takes place in this GitHub repository. Contributions are welcome! The Classic Editor If you are a long time user of this plugin and you still use the classic post editor, the best way to create polls is through your Crowdsignal account where you have a number of different ways to share polls (and surveys). However, up to version 2.2.6, this plugin had an “Add Poll” button above the post editor that opened a very basic poll editor. That “Add Poll” button has since been removed but if you would still like to use it, open up the wp-admin dashboard on your WordPress site. Add “admin.php?page=polls&action=create-poll” to the end of the URL, after “wp-admin/” so it looks like https://example.com/wp-admin/admin.php?page=polls&action=create-poll and you will see the old poll editor. Bookmark that URL if you still want to use that poll editor. We do not recommend using version 2.2.6 of the plugin as you will miss out on many bug fixes and new features added since then.

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C