SendPress Newsletters

SendPress Newsletters is a WordPress plugin that allows users to create and send newsletters directly from their website. The plugin offers unlimited subscribers, customizable templates, and tracking for each email. It also includes a feature called Auto Cron, which checks the site every 15 minutes to ensure newsletters are sent on time. SendPress Newsletters Pro offers additional features such as autoresponders, custom fields, and WooCommerce integration.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in SendPress Newsletters 1.23.11.6

    Open

    The SendPress Newsletters plugin for WordPress contains a security vulnerability that could allow unauthenticated attackers to inject malicious web scripts into pages. This vulnerability is present i...

    Read More
  • Input validation vulnerability in SendPress Newsletters 1.22.3.31

    Fixed

    The SendPress Newsletters plugin for WordPress has a security vulnerability that allows attackers with contributor-level permissions and higher to inject malicious code into pages. If someone visits ...

    Read More
  • Input validation vulnerability in SendPress Newsletters 1.22.3.31

    Open

    The SendPress Newsletters plugin for WordPress is vulnerable to a type of attack that can allow malicious users to inject web scripts into pages on the site. This attack is only possible if the plugi...

    Read More
  • Input validation vulnerability in SendPress Newsletters 1.22.3.31

    Open

    The SendPress Newsletters plugin for WordPress is vulnerable to a type of attack called Cross-Site Request Forgery (CSRF). This means that if an unauthenticated attacker can trick a site administrato...

    Read More
  • Access violation vulnerability in SendPress Newsletters 1.22.3.31

    Open

    The SendPress Newsletters plugin for WordPress is vulnerable to unauthorized change. This means that attackers who are not authorized could run the plugin's cron function in versions up to 1.22.3.31....

    Read More
  • Input validation vulnerability in SendPress Newsletters 1.20.7.13

    Fixed

    The SendPress Newsletters plugin for WordPress has a security vulnerability in versions up to and including 1.20.6.08. This vulnerability makes it possible for people with malicious intentions to ins...

    Read More
  • Input validation vulnerability in SendPress Newsletters 1.1.7.21

    Fixed

    The SendPress Newsletters plugin for WordPress is vulnerable to a type of attack called Reflected Cross-Site Scripting. This attack can be used by unauthenticated attackers to inject malicious web sc...

    Read More
  • Input validation vulnerability in SendPress Newsletters 1.2

    Fixed

    The sendpress plugin for WordPress

    Read More