VYPR

Simple Membership MailChimp Integration

by WordPress

CVEs (1)

  • CVE-2026-8151MedSep 2, 2026
    risk 0.35cvss 5.4epss

    The Simple Membership MailChimp Integration WordPress plugin before 1.9.8 does not have CSRF checks in its settings page, allowing attackers to trick a logged-in administrator into changing the configured third-party API key. Once replaced, all subsequent member registration…