Subscribe2 – Form, Email Subscribers & Newsletters

Subscribe2 is a subscription management and email notification system for WordPress blogs that allows users to subscribe via an easy-to-use form or register with the blog for greater flexibility over email content. Email notifications can be sent on a per-post basis or periodically in a digest email, and the format of the email can be customized. The system also allows admins to control the presentation of email notifications, manage subscriptions, and manually send email notices to subscribers. Subscribe2 uses Appsero SDK to collect telemetry data for troubleshooting and product improvements.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Access violation vulnerability in Subscribe2 – Form, Email Subscribers & Newsletters 10.42

    Fixed

    The Appsero analytics tool, which is used in many plugins, was found to have a security vulnerability. This means that someone without proper permission could change the data without authorization. T...

    Read More
  • Access violation vulnerability in Subscribe2 – Form, Email Subscribers & Newsletters 10.40

    Fixed

    The Subscribe2 plugin for WordPress, which is used to send emails to site users, is vulnerable to unauthorized access in versions up to and including 10.40. This means that users with the author role...

    Read More
  • Input validation vulnerability in Subscribe2 – Form, Email Subscribers & Newsletters 10.40

    Fixed

    The Subscribe2 plugin for WordPress, which is used by some website administrators, has a security vulnerability in versions 10.40 and earlier. This vulnerability means that it's possible for attacker...

    Read More
  • Access violation vulnerability in Subscribe2 – Form, Email Subscribers & Newsletters 10.40

    Fixed

    The Subscribe2 plugin for WordPress, up to version 10.40, has a security vulnerability that allows authors on the site to send emails with any content or attachments to registered users without being...

    Read More
  • Input validation vulnerability in Subscribe2 – Form, Email Subscribers & Newsletters 10.40

    Fixed

    The Subscribe2 WordPress plugin has a security issue in versions up to and including 10.40. This vulnerability allows an unauthenticated attacker to send emails with custom content to users of sites ...

    Read More
  • Input validation vulnerability in Subscribe2 – Form, Email Subscribers & Newsletters 8.1

    Fixed

    The Subscribe2 – Form, Email Subscribers & Newsletters plugin for WordPress is vulnerable to security threats. This means that it is possible for attackers to insert malicious code into the plu...

    Read More
  • Input validation vulnerability in Subscribe2 – Form, Email Subscribers & Newsletters 10.16

    Fixed

    The Subscribe2 - Form

    Read More
  • Input validation vulnerability in Subscribe2 – Form, Email Subscribers & Newsletters 10.37

    Fixed

    The Subscribe2 plugin for WordPress has a security issue that affects all versions up to 10.37. Someone who is not authorized to use the plugin could delete users from the system if they can get an ad...

    Read More
  • Input validation vulnerability in Appsero analytics tool 1.2.0 (41 plugins affected)

    Fixed

    The Appsero analytics tool

    Read More
  • Access violation vulnerability in Appsero analytics tool 1.2.1 (41 plugins affected)

    Fixed

    Several plugins are using the Appsero analytics tool, but it is vulnerable to authorization bypass due to a missing capability check on a function used for feedback submission in versions up to 1.2.1....

    Read More