Products: 3
    Vulnerabilities: 7
    Known Exploited: 0
    1
    Critical Level Threats
    1
    High Level Threats
    5
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-66128

    WordPress Sendinblue for WooCommerce plugin <= 4.0.49 - Broken Access Control vulnerability

    Last Modified: Apr 23, 2026
    Published: Dec 16, 2025

    CVE-2024-8477

    Newsletter, SMTP, Email marketing and Subscribe forms by Brevo (formely Sendinblue) <= 3.1.87 - Cross-Site Request Forgery

    Last Modified: Apr 08, 2026
    Published: Oct 10, 2024

    CVE-2024-35668

    WordPress Newsletter, SMTP, Email marketing and Subscribe forms by Brevo plugin <= 3.1.77 - Reflected Cross Site Scripting (XSS) vulnerability

    Last Modified: Nov 21, 2024
    Published: Jun 04, 2024

    CVE-2023-26859

    SQL injection vulnerability found in PrestaShop sendinblue v.4.0.15 and before allow a remote attacker to gain privileges via the ajaxOrderTracking.php component.

    Last Modified: Nov 21, 2024
    Published: Jul 26, 2023

    CVE-2023-2472

    Newsletter, SMTP, Email marketing and Subscribe forms by Sendinblue < 3.1.61 - Reflected XSS

    Last Modified: Jan 08, 2025
    Published: Jun 05, 2023
    Items Per Page
    Brevo Vulnerabilities & Security CVEs | CVE-DB