Known vulnerabilities in ShopMagic – email automation for WordPress
Flexible email automation and workflows triggered by customer and site events.
2Reported vulnerabilities
7.5Highest CVSS score
4.8.8Latest version
10,000+Active installs
What to do now
Update ShopMagic – email automation for WordPress to 4.7.3 or later.
2 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2025-59578 | High | 0.3% | 4.5.6 and earlier | 4.5.7 |
October 15, 2025 |
| CVE-2025-69093 | Medium | 0.2% | 4.7.2 and earlier | 4.7.3 |
January 7, 2026 |