Jontasc

Sailthru Triggermail

3 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.03%
  • Veröffentlicht 15.05.2025 20:15:34
  • Zuletzt bearbeitet 12.06.2025 14:32:27

The Sailthru Triggermail WordPress plugin through 1.1 does not sanitise and escape some of its settings and is missing CSRF protection which could allow subscribers to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capabili...

Exploit
  • EPSS 0.29%
  • Veröffentlicht 21.05.2024 06:15:09
  • Zuletzt bearbeitet 21.05.2025 19:01:52

The Sailthru Triggermail WordPress plugin through 1.1 does not sanitise and escape various parameters before outputting them back in pages and attributes, leading to a Reflected Cross-Site Scripting which could be used against high privilege users su...

Exploit
  • EPSS 0.16%
  • Veröffentlicht 21.05.2024 06:15:09
  • Zuletzt bearbeitet 21.05.2025 19:02:33

The Sailthru Triggermail WordPress plugin through 1.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is d...