Vulnerabilities > Acymailing > Acymailing > 7.5.0

DATE CVE VULNERABILITY TITLE RISK
2024-08-22 CVE-2024-7384 Unrestricted Upload of File with Dangerous Type vulnerability in Acymailing
The AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the acym_extractArchive function in all versions up to, and including, 9.7.2.
network
low complexity
acymailing CWE-434
8.8
2023-09-25 CVE-2023-41867 Unspecified vulnerability in Acymailing
Unauth.
network
low complexity
acymailing
6.1