Viral Loops WP Integration
Viral Loops WP Integration has 3 disclosed vulnerabilities in the WordSec catalog, all reported in 2025; none of them are fixed as of September 2026. Their average CVSS score is 4.6, and the most serious one scores 5.3 out of 10. 2025 was the busiest year with 3 disclosures.
The most common weakness is Missing Authorization, behind 2 of the records (67%). Other recurring categories include Exposure Of Sensitive Information To An Unauthorized Actor.
None of the 3 issues recorded for Viral Loops WP Integration have a published fix yet, which makes virtual patching the only reliable mitigation. The oldest unresolved one dates back to 2025.
2 independent researchers contributed these findings, most of them (2) reported by ch4r0n. Viral Loops WP Integration is installed on roughly 200 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.0.14.
CVE-2025-28995Viral Loops WP Integration <= 3.8.1 - Missing Authorization
Read the full analysisVulnerability Records

Viral Loops WP Integration
Author
viralloops
Install Viral Loops easily to Gutenberg, Elementor, Divi Builder and WPBakery Page Builder with this new plugin from Viral Loops. Viral Loops helps you find more customers and grow your email list by running viral and referral marketing campaigns on your WordPress website. Create a campaign in Viral Loops and install it easily using Viral Loops WP Integration. This plugin adds a new Viral Loops block to Gutenberg (default WordPress editor) and to your favourite page builders (Elementor, Divi Builder, WPBakery Page Builder). That way, installing your campaign to WordPress is as simple as dragging and dropping the Viral Loops block in the page.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C