CVE-2026-105322 - Magee Shortcodes <= 2.1.1 - Unauthenticated Mail Relay via Contact Form
CVE ID :CVE-2026-105322
Published : Oct. 7, 2026, 7:16 a.m. | 29 minutes ago
Description :The Magee Shortcodes WordPress plugin through 2.1.1 does not restrict the recipient of some of its unauthenticated contact-form actions, allowing unauthenticated users to send arbitrary emails to any address through the site (mail relay).
Severity: 5.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Oct. 7, 2026, 7:16 a.m. | 29 minutes ago
Description :The Magee Shortcodes WordPress plugin through 2.1.1 does not restrict the recipient of some of its unauthenticated contact-form actions, allowing unauthenticated users to send arbitrary emails to any address through the site (mail relay).
Severity: 5.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...