Vulnerabilities > Kibokolabs > Arigato Autoresponder AND Newsletter > 2.1
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-11-16 | CVE-2023-47686 | Unspecified vulnerability in Kibokolabs Arigato Autoresponder and Newsletter Cross-Site Request Forgery (CSRF) vulnerability in Kiboko Labs Arigato Autoresponder and Newsletter plugin <= 2.7.2.2 versions. | 8.8 |
2023-04-07 | CVE-2023-25020 | Unspecified vulnerability in Kibokolabs Arigato Autoresponder and Newsletter Unauth. | 6.1 |
2023-04-07 | CVE-2023-25031 | Unspecified vulnerability in Kibokolabs Arigato Autoresponder and Newsletter Auth. | 4.8 |
2023-04-07 | CVE-2023-25061 | Unspecified vulnerability in Kibokolabs Arigato Autoresponder and Newsletter Auth. | 5.4 |
2023-02-27 | CVE-2023-0543 | Unspecified vulnerability in Kibokolabs Arigato Autoresponder and Newsletter The Arigato Autoresponder and Newsletter WordPress plugin before 2.1.7.2 does not sanitize and escape some of its settings, which could allow high-privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed. | 4.8 |