📦 Acymailing

by Acymailing

🔍 What is Acymailing?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-28731

CRITICAL CVSS 9.8 Mar 30, 2023

This vulnerability allows unauthenticated attackers to execute arbitrary PHP code on Joomla websites using the AnyMailing plugin. Attackers can upload malicious files through the front-end campaign cr...

CVE-2024-7384

HIGH CVSS 7.5 Aug 22, 2024

The AcyMailing WordPress plugin has a vulnerability that allows authenticated users with Subscriber-level access or higher to upload arbitrary files due to missing file type validation. This can lead ...

CVE-2023-28733

HIGH CVSS 7.2 Mar 30, 2023

The AnyMailing Joomla Plugin has a stored cross-site scripting (XSS) vulnerability in templates and emails that allows attackers to inject malicious scripts. This affects front-office users with campa...