Medium 5.3 Unfixed Closed
2026-04-22≤ 1.0.2
CVE-2026-3642
CVE-2026-3642
e-shot <= 1.0.2 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information Exposure via API Token via 'eshot_form_builder_get_account_data' AJAX Action