cleantalk
Vulnerabilities and Security Researches

MailChimp Forms by MailMunch, b1fde7e92b7824b9cdce68b49551399123e4d32b

Published on
Aug 11, 2023
Research Description
MailChimp Forms by MailMunch [mailchimp-forms-by-mailmunch] < 3.1.5 WordPress MailChimp Forms by MailMunch Plugin <= 3.1.4 is vulnerable to Broken Access Control No patched version is available. Lana Codes discovered and reported this Broken Access Control vulnerability in WordPress MailChimp Forms by MailMunch Plugin. A broken access control issue refers to a missing authorization, authentication or nonce token check in a function that could lead to an unprivileged user to executing a certain higher privileged action. This vulnerability has not been known to be fixed yet.
Affected versions
max 3.1.5.
Status
vulnerable