CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Codemiq 1Wordpress Email Template Designer Jun 17, 2026 Feb 4, 2022 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 The WP HTML Mail WordPress plugin is vulnerable to unauthorized access which allows unauthenticated attackers to retrieve and modify theme settings due to a missing capability check on the /themesettings REST-API endpoin...Show more |
1Codemiq 1Wordpress Email Template Designer Jun 17, 2026 Jul 7, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Cross-site request forgery (CSRF) vulnerability in WordPress Email Template Designer - WP HTML Mail versions prior to 3.0.8 allows remote attackers to hijack the authentication of administrators via unspecified vectors. |