CVE-2019-14800: Foliovision Fv Flowplayer Video Player

Medium severity, CVSS 5.3. EPSS: 1.5% chance of exploitation in the next 30 days.

The FV Flowplayer Video Player plugin before 7.3.15.727 for WordPress allows guests to obtain the email subscription list in CSV format via the wp-admin/admin-post.php?page=fvplayer&fv-email-export=1 URI.

Affected products

  • Foliovision Fv Flowplayer Video Player: before 7.3.15.727 (fixed in 7.3.15.727)

Published 2019-08-15. Last modified 2026-06-17.