cleantalk
Vulnerabilities and Security Researches

Icegram Express – Email Marketing, Newsletters and Automation for WordPress & WooCommerce, CVE-2025-66055

CVE, Research URL

CVE-2025-66055

Published on
Nov 21, 2025
Research Description
Deserialization of Untrusted Data vulnerability in Icegram Email Subscribers & Newsletters email-subscribers allows Object Injection.This issue affects Email Subscribers & Newsletters: from n/a through <= 5.9.10.
Affected versions
max 5.9.10.
Status
vulnerable