Vulnerabilities > Freshmail

DATE CVE VULNERABILITY TITLE RISK
2019-10-22 CVE-2015-9496 SQL Injection vulnerability in Freshmail Freshmail-Newsletter
The freshmail-newsletter plugin before 1.6 for WordPress has shortcode.php SQL Injection via the 'FM_form id=' substring.
network
low complexity
freshmail CWE-89
8.8