• I’m seeing the warning below, so have deactivated this plugin. Is it being patched?

    Unauthenticated Cross Site Scripting (XSS) in Subscribe2 <= 10.46 versions.

    This vulnerability appears to be unpatched. Stay tuned for upcoming plugin updates.

    Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’)

    The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.

You must be logged in to reply to this topic.