CVE-2025-11876 | Mailgun Subscriptions Plugin up to 1.3.1 on WordPress Shortcode mailgun_subscription_form cross site scripting
A vulnerability has been found in Mailgun Subscriptions Plugin up to 1.3.1 on WordPress and classified as problematic. Impacted is the function mailgun_subscription_form of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is listed as CVE-2025-11876. The attack may be initiated remotely. There is no available exploit.