Brevo – Email, SMS, Web Push, Chat, and more.
mailin · plugin
Known security vulnerabilities for Brevo – Email, SMS, Web Push, Chat, and more.. Find out in seconds which version runs on your site with WP Lens.
5 known vulnerabilities
latest Jul 10, 2026
Vulnerabilities
- High 8.8
WordPress Brevo plugin <= 3.1.82 - Cross Site Request Forgery (CSRF) vulnerability
- Medium 6.5
Brevo - Email, SMS, Web Push, Chat, and more. <= 3.3.0 - Unauthenticated Authorization Bypass via Type Juggling
- Medium 6.1
Newsletter, SMTP, Email marketing and Subscribe forms by Brevo (formely Sendinblue) <= 3.1.77 - Reflected Cross-Site Scripting
- Medium 6.1
WordPress Newsletter, SMTP, Email marketing and Subscribe forms by Brevo plugin <= 3.1.77 - Reflected Cross Site Scripting (XSS) vulnerability
- Medium 4.3
Newsletter, SMTP, Email marketing and Subscribe forms by Brevo (formely Sendinblue) <= 3.1.87 - Cross-Site Request Forgery