Input validation vulnerability in SendPress Newsletters 1.22.3.31

The SendPress Newsletters plugin for WordPress has a security vulnerability that allows attackers with contributor-level permissions and higher to inject malicious code into pages. If someone visits one of these pages, the malicious code will get executed. This vulnerability affects all versions of the plugin up until version 1.22.3.31, since it does not adequately sanitize user input or properly escape output.

Detected in:

SendPress Newsletters open vulnerable versions: >= * <= 1.22.3.31

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.