Description
WordPress Plugin Email Subscribers by Icegram Express-Email Marketing, Newsletters, Automation for WordPress & WooCommerce is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions. WordPress Plugin Email Subscribers by Icegram Express-Email Marketing, Newsletters, Automation for WordPress & WooCommerce version 5.7.13 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 5.7.14 or latest
References
Related Vulnerabilities
WordPress Plugin WORDPRESS VIDEO GALLERY SQL Injection (2.8)
WordPress Plugin Social Sharing Toolkit Cross-Site Scripting (2.6)
Squid Out-of-bounds Read Vulnerability (CVE-2022-41318)
WordPress Plugin Companion Revision Manager-Revision Control Unspecified Vulnerability (1.3)
WordPress Plugin WP Easy Gallery Cross-Site Scripting (4.1.3)