Input validation vulnerability in Newsletter & Bulk Email Sender – Email Newsletter Plugin for WordPress 2.0.1

The Newsletter & Bulk Email Sender plugin for WordPress has a security vulnerability that allows attackers to inject malicious code into pages on the website. This vulnerability exists in all versions up to 2.0.1. For an attacker to exploit this vulnerability, they must have access to the website with at least a contributor-level account. If the vulnerability is exploited, malicious code will be executed whenever a user visits the page with the injected code.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.