Input validation vulnerability in Newsletter, SMTP, Email marketing and Subscribe forms by Sendinblue 3.1.39

The Sendinblue plugin for WordPress, which allows users to create newsletters, SMTP emails, marketing messages, and subscription forms, is not secure in versions up to 3.1.39. This means that malicious code, called Cross-Site Scripting, can be inserted into many of the different parameters available.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.