Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Wp Mail Project Subscribe
Filtered by product Wp Mail
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-5942 1 Wp Mail Project 1 Wp Mail 2019-09-27 4.3 MEDIUM 6.1 MEDIUM
An issue was discovered in the WP Mail plugin before 1.2 for WordPress. The replyto parameter when composing a mail allows for a reflected XSS. This would allow you to execute JavaScript in the context of the user receiving the mail.