CVE-2025-46011
04.06.2025, 20:15
Listmonk v4.1.0 (fixed in v5.0.0) is vulnerable to SQL Injection in the QuerySubscribers function which allows attackers to escalate privileges.
Vendor | Product | Version |
---|---|---|
nadh | listmonk | 2.4.0 ≤ 𝑥 < 5.0.0 |
𝑥
= Vulnerable software versions
References