Mailerlite Woocommerce Integration vulnerabilities
4 known vulnerabilities affecting mailerlite/mailerlite_woocommerce_integration.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL1HIGH1MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2025-67945P1CRITICALCVSS 9.3Exploited≤ 3.1.22026-01-22
CVE-2025-67945 [CRITICAL] CWE-89 CVE-2025-67945: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in MailerLite MailerLite – WooCommerce integration woo-mailerlite allows SQL Injection.This issue affects MailerLite – WooCommerce integration: from n/a through <= 3.1.2.
nvd
CVE-2026-1000P3MEDIUMCVSS 6.5≤ 3.1.32026-01-16
CVE-2026-1000 [MEDIUM] CWE-862 CVE-2026-1000: The MailerLite - WooCommerce integration plugin for WordPress is vulnerable to unauthorized data mod
The MailerLite - WooCommerce integration plugin for WordPress is vulnerable to unauthorized data modification and deletion in all versions up to, and including, 3.1.3. This is due to missing capability checks on the resetIntegration() function. This makes it possible for authenticated attackers, with Subscriber-level access and above, to reset the plu
nvd
CVE-2023-52223P3HIGHCVSS 8.8≥ n/a, ≤ 2.0.82024-02-28
CVE-2023-52223 [HIGH] CWE-352 CVE-2023-52223: Cross-Site Request Forgery (CSRF) vulnerability in MailerLite MailerLite – WooCommerce integration.T
Cross-Site Request Forgery (CSRF) vulnerability in MailerLite MailerLite – WooCommerce integration.This issue affects MailerLite – WooCommerce integration: from n/a through 2.0.8.
nvd
CVE-2023-52227P4MEDIUMCVSS 4.3≥ n/a, ≤ 2.0.82024-06-11
CVE-2023-52227 [MEDIUM] CWE-862 CVE-2023-52227: Missing Authorization vulnerability in MailerLite MailerLite – WooCommerce integration.This issue af
Missing Authorization vulnerability in MailerLite MailerLite – WooCommerce integration.This issue affects MailerLite – WooCommerce integration: from n/a through 2.0.8.
nvd