VYPR

SMTP for Sendinblue

by WordPress

CVEs (1)

  • CVE-2025-0953HigFeb 22, 2025
    risk 0.40cvss 7.2epss 0.00

    The SMTP for Sendinblue – YaySMTP plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1.2 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web…