CVE-2023-40203
- EPSS 0.36%
- Veröffentlicht 13.12.2024 15:15:21
- Zuletzt bearbeitet 11.02.2025 21:14:25
Missing Authorization vulnerability in MailMunch MailChimp Forms by MailMunch allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects MailChimp Forms by MailMunch: from n/a through 3.1.4.
CVE-2024-8726
- EPSS 1.47%
- Veröffentlicht 20.11.2024 07:15:09
- Zuletzt bearbeitet 29.11.2024 20:59:02
The MailChimp Forms by MailMunch plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 3.2.3. This makes it possible for unau...
CVE-2024-31378
- EPSS 0.12%
- Veröffentlicht 15.04.2024 11:15:09
- Zuletzt bearbeitet 11.02.2025 20:15:36
Cross-Site Request Forgery (CSRF) vulnerability in MailMunch MailChimp Forms by MailMunch.This issue affects MailChimp Forms by MailMunch: from n/a through 3.2.1.
CVE-2024-29793
- EPSS 0.18%
- Veröffentlicht 27.03.2024 13:15:50
- Zuletzt bearbeitet 12.02.2025 01:24:37
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MailMunch MailChimp Forms by MailMunch allows Stored XSS.This issue affects MailChimp Forms by MailMunch: from n/a through 3.2.2.
CVE-2023-45748
- EPSS 0.15%
- Veröffentlicht 16.10.2023 11:15:44
- Zuletzt bearbeitet 21.11.2024 08:27:18
Cross-Site Request Forgery (CSRF) vulnerability in MailMunch MailChimp Forms by MailMunch plugin <= 3.1.4 versions.