← Back

Eelv Newsletter Project

eelv_newsletter_project

3 CVEs • 1 product

Products (1)

Click to collapse
Toggle

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Eelv Newsletter Project
1Eelv Newsletter
Nov 21, 2024
Jun 4, 2023
N/A· v4
6.1 MEDIUM· v3
4.0 MEDIUM· v2
A vulnerability was found in EELV Newsletter Plugin 2.x on WordPress. It has been rated as problematic. Affected by this issue is the function style_newsletter of the file lettreinfo.php. The manipulation of the argument...Show more
A vulnerability was found in EELV Newsletter Plugin 2.x on WordPress. It has been rated as problematic. Affected by this issue is the function style_newsletter of the file lettreinfo.php. The manipulation of the argument email leads to cross site scripting. The attack may be launched remotely. The name of the patch is 3339b42316c5edf73e56eb209b6a3bb3e868d6ed. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-230660.Show less
1Eelv Newsletter Project
1Eelv Newsletter
Nov 21, 2024
Aug 20, 2019
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
The eelv-newsletter plugin before 4.6.1 for WordPress has CSRF in the address book.
1Eelv Newsletter Project
1Eelv Newsletter
Nov 21, 2024
Aug 20, 2019
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
The eelv-newsletter plugin before 4.6.1 for WordPress has XSS in the address book.