Vulnerabilities > Automattic > Mailpoet > 0.0.16
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-06-02 | CVE-2019-11843 | Cross-site Scripting vulnerability in Automattic Mailpoet The MailPoet plugin before 3.23.2 for WordPress allows remote attackers to inject arbitrary web script or HTML using extra parameters in the URL (Reflective Server-Side XSS). | 6.1 |