Newspack Newsletters, CVE-2024-37242
- CVE, Research URL
- Home page URL
- Application
- Published on
- Jan 02, 2025
- Research Description
- Cross-Site Request Forgery (CSRF) vulnerability in Automattic Newspack Newsletters allows Cross Site Request Forgery.This issue affects Newspack Newsletters: from n/a through 2.13.2.
- Affected versions
-
max 2.13.3.
- Status
-
vulnerable
| Previous vulnerability researches |
|---|
| Newspack Newsletters (CVE-2024-37242) , Jun 24, 2024 |
| Newspack Newsletters (CVE-2024-37475) , Jul 04, 2024 |
| Newspack Newsletters (CVE-2025-49325) , Jun 15, 2025 |