Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
5.4
CVE-2024-53737
- EPSS 0.29%
- Veröffentlicht 28.11.2024 11:15:54
- Zuletzt bearbeitet 23.04.2026 15:21:22
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in brandtoss WP Mailster wp-mailster allows Stored XSS.This issue affects WP Mailster: from n/a through <= 1.8.16.0.
6.1
CVE-2021-28975
- EPSS 0.9%
- Veröffentlicht 21.10.2021 16:15:07
- Zuletzt bearbeitet 21.11.2024 06:00:29
WP Mailster 1.6.18.0 allows XSS when a victim opens a mail server's details in the mst_servers page, for a crafted server_host, server_name, or connection_parameter parameter.
6.1
CVE-2017-17451
- EPSS 5.09%
- Veröffentlicht 07.12.2017 00:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The WP Mailster plugin before 1.5.5 for WordPress has XSS in the unsubscribe handler via the mes parameter to view/subscription/unsubscribe2.php.