All 3 CVE vulnerabilities found in Subscribe2 – Form, Email Subscribers & Newsletters, with AI-generated Chinese analysis, references, and POCs.
Vendor: wedevs
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2024-11582 | Subscribe2 – Form, Email Subscribers & Newsletters <= 10.43 - Unauthenticated Stored Cross-Site Scripting via IP Parameter CWE-79 | 7.2 | High | 2025-02-19 |
| CVE-2023-3407 | Subscribe2 <= 10.40 - Cross-Site Request Forgery CWE-352 | 4.3 | Medium | 2023-06-28 |
| CVE-2023-1844 | Subscribe2 <= 10.40 - Missing Authorization CWE-862 | 4.3 | Medium | 2023-06-28 |
All 3 known CVE vulnerabilities affecting Subscribe2 – Form, Email Subscribers & Newsletters with full Chinese analysis, references, and POCs where available.