Broken Authentication Flaw in MailMunch Email Marketing Plugin
CVE-2026-81783

7.1HIGH

Key Information:

Vendor

WordPress

Vendor
CVE Published:
10 September 2026

What is CVE-2026-81783?

The MailMunch - Grow Your Email List plugin for WordPress is affected by a broken authentication vulnerability in versions up to 3.2.5. This flaw may allow attackers to gain unauthorized access to user accounts, compromising the integrity of user data and the overall security of the email marketing platform. Website administrators using affected versions are advised to update their plugins promptly to mitigate potential risks.

Affected Version(s)

MailMunch – Grow your Email List <= 3.2.5

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Jakub Herman | Patchstack Bug Bounty Program
.