CVE-2025-46011

Published Jun 4, 2025

Last updated a month ago

Overview

Description
Listmonk v2.4.0 through v4.1.0 is vulnerable to SQL Injection in the QuerySubscribers function which allows attackers to escalate privileges.
Source
cve@mitre.org
NVD status
Received

Social media

Hype score
Not currently trending

References

Sources include official advisories and independent security research.