Known vulnerabilities in WP Subscribe
WP Subscribe is a simple but powerful subscription plugin which supports MailChimp, Aweber and Feedburner.
2Reported vulnerabilities
4.8Highest CVSS score
1.2.16Latest version
7,000+Active installs
What to do now
Update WP Subscribe to 1.2.13 or later.
1 of these have a fixed version available. Updating resolves them.
This plugin has not been updated in over two years. New vulnerabilities may never be fixed. Consider an alternative.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2021-36844 | Medium | 0.6% | Before 1.2.13 | 1.2.13 |
May 2, 2022 |
| CVE-2026-24522 | Medium | 0.2% | 1.2.16 and earlier | — | January 26, 2026 |