CVE-2026-57626: Mailpoet

High severity, CVSS 7.1. EPSS: 0.1% chance of exploitation in the next 30 days.

Cross-Site Request Forgery (CSRF) vulnerability in MailPoet allows Cross Site Request Forgery. This issue affects MailPoet: from 5.30.0 through 5.33.0.

Affected products

  • Mailpoet Mailpoet: from 5.30.0, up to and including 5.33.0

Published 2026-07-23. Last modified 2026-07-23.