The Qubely WordPress plugin before 1.8.6 allows unauthenticated user to send arbitrary e-mails to arbitrary addresses via the qubely_send_form_data AJAX action.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/93b893be-59ad-4500-8edb-9fa7a45304d5 | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2023-08-07 15:15
Updated : 2023-11-07 03:31
NVD link : CVE-2021-24916
Mitre link : CVE-2021-24916
CVE.ORG link : CVE-2021-24916
JSON object : View
Products Affected
themeum
- qubely
CWE