Vulnerabilities > Pressified > Sendpress > 1.1

DATE CVE VULNERABILITY TITLE RISK
2023-10-10 CVE-2023-41730 Cross-Site Request Forgery (CSRF) vulnerability in Pressified Sendpress
Cross-Site Request Forgery (CSRF) vulnerability in SendPress Newsletters plugin <= 1.22.3.31 versions.
network
low complexity
pressified CWE-352
8.8
2023-10-02 CVE-2023-41729 Cross-site Scripting vulnerability in Pressified Sendpress
Auth.
network
low complexity
pressified CWE-79
4.8
2019-09-26 CVE-2015-9448 SQL Injection vulnerability in Pressified Sendpress
The sendpress plugin before 1.2 for WordPress has SQL Injection via the wp-admin/admin.php?page=sp-queue listid parameter.
network
low complexity
pressified CWE-89
6.5