phplist is an open-source newsletter manager. phplist is free to download, install and use, and is easy to integrate with any website. phplist is downloaded more than 10 000 times per month and is listed in the top open source projects for vitality score on Freshmeat. phplist is sponsored by tincan.

phplist's 30+ feature set includes:

  • double opt-in subscription mechanism
  • scheduling
  • RSS
  • list segmentation
  • click-tracking
  • attachments
  • bounce management

security update version 2.10.9

- 29 January 2009 - 1:15am GMT

We've released version 2.10.9 that fixes a local file include vulnerability.This vulnerability allows attackers to display the contents of files on the server, which can aid them to gain unauthorised access.

Everyone using any version up to this one is advised to upgrade as soon as possible. Any clients hosted by Tincan have already been patched or upgraded.

 

Read more...

security update, version 2.10.8

- 9 December 2008 - 11:56am GMT

Recently a vulnerability was found that allows unauthorized access to files locally on the server that phpList is hosted on. We have released version 2.10.8 to fix this issue. Everyone using a version prior to this version is strongly recommended to upgrade.

We want to thank Paul Myatt for reporting this vulnerability and handling the issue in a responsible manner.

Read more...