Easy Forms for Mailchimp

Easy Forms for Mailchimp has 13 disclosed vulnerabilities in the WordSec catalog, reported between 2014 and 2024; 10 are fixed and 3 remain unpatched as of September 2026. Their average CVSS score is 6.5, and the most serious one scores 9.8 out of 10. Severity breakdown: 2 critical and 2 high. 2023 was the busiest year with 6 disclosures.

The most common weakness is Cross-Site Scripting, behind 9 of the records (69%). Other recurring categories include Code Injection, Insertion Of Sensitive Information Into Log File.

10 of the records (77%) have a vendor fix, while 3 remain unpatched. The oldest unresolved one dates back to 2023.

10 independent researchers contributed these findings, most of them (3) reported by Erwan LR.

Strategic Overview

Avg CVSSMedium
6.5/ 10
Patch Coverage77%
Open

3

Fixed

10

Get automatic notifications for all Easy Forms for Mailchimp vulnerabilities before they are exploited.

Most severe open issueCVSS 7.5CVE-2024-25095

Easy Forms for Mailchimp <= 6.8.10 - Sensitive Information Exposure via logfile

Read the full analysis

Vulnerability Records

13 records
2024-06-06 00:00CVE-2024-35742
5.3
Medium
Ngô Thiên An (ancorn_)No
2024-02-12 00:00CVE-2024-25095
7.5
High
Joshua ChanNo
2023-12-21 00:00CVE-2023-4925
4.4
Medium
Sławomir ZakrzewskiNo
2023-05-22 00:00CVE-2023-2518
6.1
Medium
Erwan LRYes
2023-05-17 00:00CVE-2023-23900
6.1
Medium
Rafie MuhammadYes
2023-03-29 00:00CVE-2023-1324
6.1
Medium
Erwan LRYes
2023-03-27 00:00CVE-2023-1325
6.4
Medium
Erwan LRYes
2023-03-09 00:00CVE-2023-1323
4.4
Medium
Chau NguyenYes
2021-12-21 00:00CVE-2021-24985
6.1
Medium
ZhongFu SuYes
2020-03-29 00:00N/A
5.4
Medium
AnonymousYes
Showing 1–10 of 13 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C