SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-57626

HIGH · CVSS 7.1 EPSS 0.09%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

MailPoet versions 5.30.0 to 5.33.0 are vulnerable to a Cross-Site Request Forgery (CSRF) attack, which could allow an attacker to perform unauthorized actions on behalf of authenticated users. Organizations using these versions should prioritize patching this vulnerability to mitigate the risk of potential data breaches or unauthorized changes to their MailPoet configurations.

CVE
CVE-2026-57626
Severity
HIGH
CVSS
7.1
EPSS
0.09%

Original NVD Description

Cross-Site Request Forgery (CSRF) vulnerability in MailPoet allows Cross Site Request Forgery. This issue affects MailPoet: from 5.30.0 through 5.33.0.