Cross-site scripting (XSS) vulnerability in the Easy MailChimp Forms plugin 3.0 up to and including 5.0.6 for WordPress allows remote malicious users to inject arbitrary web script or HTML via the update_options action to wp-admin/admin-ajax.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mailchimp easy mailchimp forms plugin 5.0.6 |
||
mailchimp easy mailchimp forms plugin 5.0.5 |
||
mailchimp easy mailchimp forms plugin 5.0.3 |
||
mailchimp easy mailchimp forms plugin 4.2 |
||
mailchimp easy mailchimp forms plugin 4.0 |
||
mailchimp easy mailchimp forms plugin 5.0.1 |
||
mailchimp easy mailchimp forms plugin 5.0 |
||
mailchimp easy mailchimp forms plugin 4.4 |
||
mailchimp easy mailchimp forms plugin 4.3 |
||
mailchimp easy mailchimp forms plugin 5.0.4 |
||
mailchimp easy mailchimp forms plugin 5.0.2 |
||
mailchimp easy mailchimp forms plugin 4.2.1 |
||
mailchimp easy mailchimp forms plugin 4.1 |
||
mailchimp easy mailchimp forms plugin 3.0 |