VYPR

SendGrid

by WordPress

CVEs (2)

  • CVE-2024-43965HigAug 29, 2024
    risk 0.53cvss 8.2epss 0.02

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Smackcoders SendGrid for WordPress allows SQL Injection.This issue affects SendGrid for WordPress: from n/a through 1.4.

  • CVE-2024-9364MedOct 18, 2024
    risk 0.28cvss 4.3epss 0.00

    The SendGrid for WordPress plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'wp_mailplus_clear_logs' function in all versions up to, and including, 1.4. This makes it possible for authenticated attackers, with…