CVE Vulnerabilities for "vendor:sendpulse"

Showing 1-2 of 2 CVEs (filtered from 316,546 total)

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SendPulse SendPulse Email Marketing Newsletter allows Stored XSS. This issue affects SendPulse Email Marketing Newsletter: from n/a through 2.1.6.

MEDIUM 6.5
EPSS 0.0%
5/7/2025
2025

Cross-Site Request Forgery (CSRF) vulnerability in SendPulse SendPulse Free Web Push plugin <= 1.3.1 versions.

MEDIUM 4.3
EPSS 0.2%
10/16/2023
2023
Page 1 of 2