ANALYSIS · e2b6d0c8· FINISHED 2026-06-13 · PATCHDIFF

email-subscribers5.7.195.7.20✓ COMPLETED

Files17
Vulnerable12
True positives0
CVE matched4
1 CVE article ready PatchLeaks generated full security writeups for the matched CVEs · one per CVE, with affected files linked
CVE-2024-4010
SCOPE
SORT
4 files · page 1/1
lite/includes/controllers/class-es-campaign-controller.php
AI: 5 vulnerabilities
CWE-502: Deserialization of Untrusted DataCWE-20: Improper Input ValidationCWE-116: Improper Encoding or Escaping of Output CVE-2024-4010
#%!d(float64=011)
lite/includes/controllers/class-es-campaigns-controller.php
AI: 2 vulnerabilities
CWE-502: Deserialization of Untrusted DataCWE-749: Exposed Dangerous Method or Function CVE-2024-4010
#%!d(float64=012)
lite/includes/db/class-es-db-campaigns.php
AI: 2 vulnerabilities
CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2024-4010
#%!d(float64=014)
lite/includes/db/class-es-db-contacts.php
AI: 1 vulnerabilities
CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2024-4010
#%!d(float64=015)
Select a file from the list to inspect its diff and AI analysis.
↑ ↓ to navigate