Ultimate WP Mail

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in Ultimate WP Mail 1.3.8

    Fixed

    The WP Mail plugin for WordPress has a security issue in versions 1.3.8 and below. This means that unauthorized users with contributor-level access or higher can insert harmful scripts into pages tha...

    Read More
  • Access violation vulnerability in Ultimate WP Mail 1.3.6

    Fixed

    A plugin called "Ultimate WP Mail" for WordPress has a security issue that allows people to gain higher level access than they should have. This happens because the plugin does not properly check if ...

    Read More
  • Access violation vulnerability in Ultimate WP Mail 1.3.5

    Fixed

    The WP Mail plugin for WordPress has a security issue that allows attackers to access it without permission. This applies to all versions up to 1.3.5. This means that attackers with at least Subscrib...

    Read More
  • Input validation vulnerability in Ultimate WP Mail 1.3.4

    Fixed

    The WP Mail plugin for WordPress has a security issue in versions 1.3.4 and below. This means that anyone can make changes to email lists without being logged in if they can get the site administrato...

    Read More
  • Input validation vulnerability in Ultimate WP Mail 1.3.4

    Fixed

    The WP Mail plugin for WordPress version 1.3.4 and below is at risk for SQL Injection. This means that attackers with certain levels of access can add their own SQL queries to the existing ones and p...

    Read More
  • Input validation vulnerability in Ultimate WP Mail 1.3.3

    Open

    The WP Mail plugin for WordPress has a security flaw called Open Redirect. This means that anyone can trick users into going to harmful websites by providing a redirect link that is not properly chec...

    Read More