VYPR

WordPress Email Marketing Plugin – WP Email Capture

by WordPress

CVEs (2)

  • CVE-2024-6928CriSep 8, 2024
    risk 0.64cvss 9.8epss 0.03

    The Opti Marketing WordPress plugin through 2.0.9 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

  • CVE-2023-28421MedDec 21, 2023
    risk 0.34cvss 5.3epss 0.01

    Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Winwar Media WordPress Email Marketing Plugin – WP Email Capture.This issue affects WordPress Email Marketing Plugin – WP Email Capture: from n/a through 3.10.