cleantalk
Vulnerabilities and Security Researches

SendPulse Email Marketing Newsletter, CVE-2025-67948

CVE, Research URL

CVE-2025-67948

Published on
Dec 16, 2025
Research Description
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in SendPulse SendPulse Email Marketing Newsletter sendpulse-email-marketing-newsletter allows Retrieve Embedded Sensitive Data.This issue affects SendPulse Email Marketing Newsletter: from n/a through <= 2.2.1.
Affected versions
max 2.2.1.
Status
vulnerable