GHSA-px7h-jc96-f274MediumCVSS 4.3
Subscriber Insecure Direct Object References (IDOR) in Newsletters, Email Marketing, SMS and...
🔗 CVE IDs covered (1)
📋 Description
Subscriber Insecure Direct Object References (IDOR) in Newsletters, Email Marketing, SMS and Popups by Omnisend <= 1.9.0 versions.
🔗 References (3)
- https://nvd.nist.gov/vuln/detail/CVE-2026-97074
- https://patchstack.com/database/wordpress/plugin/omnisend/vulnerability/wordpress-newsletters-email-marketing-sms-and-popups-by-omnisend-plugin-1-9-0-insecure-direct-object-references-idor-vulnerability?_s_id=cve
- https://github.com/advisories/GHSA-px7h-jc96-f274