Product
nadh listmonk
6 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-34828
CVE-2026-34584
CVE-2026-21483
CVE-2025-58430
CVE-2025-49136
CVE-2025-46011
>= 4.1.0 and < 6.1.0
listmonk is a standalone, self-hosted, newsletter and mailing list manager. From version 4.1.0 to before version 6.1.0, a session
>= 4.1.0 and < 6.1.0
listmonk is a standalone, self-hosted, newsletter and mailing list manager. From version 4.1.0 to before version 6.1.0, bugs in li
< 6.0.0
listmonk is a standalone, self-hosted, newsletter and mailing list manager. Prior to version 6.0.0, lower-privileged user with cam
<= 1.1.0
listmonk is a standalone, self-hosted, newsletter and mailing list manager. In versions up to and including 1.1.0, every http requ
>= 4.0.0 and < 5.0.2
listmonk is a standalone, self-hosted, newsletter and mailing list manager. Starting in version 4.0.0 and prior to version 5.0.2,
>= 2.4.0 and < 5.0.0
Listmonk v4.1.0 (fixed in v5.0.0) is vulnerable to SQL Injection in the QuerySubscribers function which allows attackers to escala