Source: National Vulnerability Database

The WP-Polls WordPress plugin before 2.76.0 prioritizes getting a visitor's IP from certain HTTP headers over PHP's REMOTE_ADDR, which makes it possible to bypass IP-based limitations to vote in certain situations.

https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2022-1581

47 hits since 2022-11-21

PHP Vulns Source Ratio: 16% (8184 total, 667 propagated, 4092 filtered)