Medium severity6.1NVD Advisory· Published Jun 26, 2018· Updated Jun 17, 2026
CVE-2018-0602
CVE-2018-0602
Description
Cross-site scripting vulnerability in Email Subscribers & Newsletters versions prior to 3.5.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <3.5.0
- Range: prior to version 3.5.0
Patches
Vulnerability mechanics
References
3- jvn.jp/en/jp/JVN16471686/index.htmlnvdThird Party Advisory
- wordpress.org/plugins/email-subscribers/nvdRelease NotesThird Party Advisory
- wpvulndb.com/vulnerabilities/9101nvd
News mentions
0No linked articles in our index yet.