The WPFunnels WordPress plugin before 3.13.0 does not perform any authorisation or nonce check in one of its opt-in submission handlers, and takes the notification recipients and subject from the request, allowing unauthenticated users to make the site send emails to arbitrary recipients with an arbitrary subject.
Metrics
Affected Vendors & Products
References
History
Fri, 04 Sep 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-285 |
Fri, 04 Sep 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The WPFunnels WordPress plugin before 3.13.0 does not perform any authorisation or nonce check in one of its opt-in submission handlers, and takes the notification recipients and subject from the request, allowing unauthenticated users to make the site send emails to arbitrary recipients with an arbitrary subject. | |
| Title | WPFunnels < 3.13.0 - Unauthenticated Arbitrary Recipient Email Sending via wpfnl_shortcode_optin_submission | |
| References |
|
Status: PUBLISHED
Assigner: WPScan
Published: 2026-09-04T06:00:03.978Z
Updated: 2026-09-04T12:53:12.964Z
Reserved: 2026-08-25T09:32:42.758Z
Link: CVE-2026-79632
No data.
Status : Received
Published: 2026-09-04T07:17:10.017
Modified: 2026-09-04T07:17:10.017
Link: CVE-2026-79632
No data.