CVE-2023-5098: Fatcatapps Campaign Monitor Optin Cat
High severity, CVSS 8.1. EPSS: 0.6% chance of exploitation in the next 30 days.
The Campaign Monitor Forms by Optin Cat WordPress plugin before 2.5.6 does not prevent users with low privileges (like subscribers) from overwriting any options on a site with the string "true", which could lead to a variety of outcomes, including DoS.
Affected products
- Fatcatapps Campaign Monitor Optin Cat: before 2.5.6 (fixed in 2.5.6)
Published 2023-10-31. Last modified 2026-06-17.