Vulnerabilities (CVE)

Filtered by vendor Freeamigos Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-6496 1 Freeamigos 1 Manage Notification E-mails 2024-02-28 N/A 5.3 MEDIUM
The Manage Notification E-mails plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 1.8.5 via the card_famne_export_settings function. This makes it possible for unauthenticated attackers to obtain plugin settings.
CVE-2022-34654 1 Freeamigos 1 Manage Notification E-mails 2024-02-28 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) in Virgial Berveling's Manage Notification E-mails plugin <= 1.8.2 on WordPress.