RSS   Podatności dla
'Newsletter\, smtp\, email marketing and subscribe'
   RSS

2022-02-14
 
CVE-2021-24874

CWE-79
 

 
The Newsletter, SMTP, Email marketing and Subscribe forms by Sendinblue WordPress plugin before 3.1.31 does not escape the lang and pid parameter before outputting them back in attributes, leading to Reflected Cross-Site Scripting issues

 
2022-01-24
 
CVE-2021-24923

CWE-79
 

 
The Newsletter, SMTP, Email marketing and Subscribe forms by Sendinblue WordPress plugin before 3.1.25 does not escape the sib-statistics-date parameter before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting issue

 


Copyright 2024, cxsecurity.com

 

Back to Top