High severity8.8NVD Advisory· Published Jul 7, 2021· Updated Jun 17, 2026
CVE-2021-20779
CVE-2021-20779
Description
Cross-site request forgery (CSRF) vulnerability in WordPress Email Template Designer - WP HTML Mail versions prior to 3.0.8 allows remote attackers to hijack the authentication of administrators via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:codemiq:wordpress_email_template_designer:*:*:*:*:*:wordpress:*:*Range: <3.0.8
- Range: <3.0.8
- codemiq/WordPress Email Template Designer - WP HTML Mailv5Range: versions prior to 3.0.8
Patches
Vulnerability mechanics
References
3- jvn.jp/en/jp/JVN42880365/index.htmlnvdThird Party Advisory
- wordpress.org/plugins/wp-html-mail/nvdProductThird Party Advisory
- codemiq.com/en/nvdProduct
News mentions
0No linked articles in our index yet.