CVE-2018-1002000: Kibokolabs Arigato Autoresponder And Newsletter

High severity, CVSS 7.2. EPSS: 4.4% chance of exploitation in the next 30 days.

There is blind SQL injection in WordPress Arigato Autoresponder and Newsletter v2.5.1.8 These vulnerabilities require administrative privileges to exploit. There is an exploitable blind SQL injection vulnerability via the del_ids variable by POST request.

Affected products

  • Kibokolabs Arigato Autoresponder And Newsletter: version 2.5.1.8 only

Published 2018-12-03. Last modified 2026-06-17.