Description
WordPress Plugin MailUp newsletter sign-up form is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently modify plugin settings via 'formData=save' requests. WordPress Plugin MailUp newsletter sign-up form version 1.3.2 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.3.3 or latest
References
Related Vulnerabilities
WordPress Plugin FG PrestaShop to WooCommerce Cross-Site Scripting (3.19.1)
WordPress CVE-2011-3125 Vulnerability (CVE-2011-3125)
WordPress Plugin Featured Content 'param' Parameter Cross-Site Scripting (0.0.1)
WordPress Plugin WordPress Gallery-NextGEN Gallery Cross-Site Request Forgery (3.28)
MediaWiki Improper Handling of Exceptional Conditions Vulnerability (CVE-2020-25869)