CVE-2019-15777: Shapepress Wp Dsgvo Tools
Medium severity, CVSS 5.4. EPSS: 1.1% chance of exploitation in the next 30 days.
The shapepress-dsgvo plugin before 2.2.19 for WordPress has wp-admin/admin-ajax.php?action=admin-common-settings&admin_email= XSS.
Affected products
- Shapepress Wp Dsgvo Tools: before 2.2.19 (fixed in 2.2.19)
Published 2019-08-29. Last modified 2026-06-17.