CVE-2021-25033

Publication date

2022-02-14 09:20:45

Family

WPScan

State

PUBLISHED

Description

The WordPress Newsletter Plugin WordPress plugin before 1.6.5 does not validate the to parameter before redirecting the user to its given value, leading to an open redirect issue