MailPoet Newsletters <= 2.6.19 - Unauthenticated Reflected Cross-Site Scripting (XSS)
MailPoet Newsletters (Previous)
MailPoet Newsletters <= 2.7.2 - Authenticated Reflected Cross-Site Scripting (XSS)
MailPoet Newsletters <= 2.7.2 - SQL Injection
Wysija Newsletters - swfupload Cross-Site Scripting
MailPoet Newsletters (Previous) <= 2.1.6 - Cross-Site Scripting
CVE-2012-3414
MailPoet Newsletters <= 2.6.19 - Reflected Cross-Site Scripting
MailPoet Newsletters <= 2.7.2 - Reflected Cross-Site Scripting
MailPoet Newsletters <= 2.7.2 - SQL Injection
WordPress Wysija Newsletters Plugin - Multiple SQL Injection Vulnerabilities
WordPress Wysija Newsletters Plugin <= 2.1.6 - Cross Site Scripting
WordPress MailPoet Newsletters Plugin <= 2.6.19 - Cross Site Scripting
WordPress MailPoet Newsletters Plugin <= 2.7.2 - SQL Injection
WordPress MailPoet Newsletters Plugin <= 2.7.2 - Reflected Cross Site Scripting
CVE-2013-1408
MailPoet Newsletters <= 2.6.7 - Authorization Bypass
MailPoet Newsletters <= 2.6.6 - Arbitrary File Upload
MailPoet Newsletters (Previous) <= 2.6.10 - Cross-Site Request Forgery
CVE-2018-20853