| CVE-2026-25418 | WordPress Bit Form plugin <= 2.21.10 - SQL Injection vulnerability | Bit Apps | Bit Form | - | - | 2026-02-19 08:27:07 | Deep Dive |
| CVE-2025-14901 | Bit Form – Contact Form Plugin <= 2.21.6 - Missing Authorization to Unauthenticated Workflow Replay | bitpressadmin | Bit Form – Custom Contact Form, Multi Step, Conversational Form & Payment Form builder | Medium | 6.5 | 2026-01-07 06:35:58 | Deep Dive |
| CVE-2025-6679 | Contact Form by Bit Form - Bit Form <= 2.20.3 - Unauthenticated Arbitrary File Upload | bitpressadmin | Bit Form – Custom Contact Form, Multi Step, Conversational Form & Payment Form builder | Critical | 9.8 | 2025-08-15 06:40:43 | Deep Dive |
| CVE-2024-13451 | Contact Form by Bit Form <= 2.17.5 - Unauthenticated Sensitive Information Exposure | bitpressadmin | Bit Form – Custom Contact Form, Multi Step, Conversational Form & Payment Form builder | Medium | 5.3 | 2025-07-02 05:29:18 | Deep Dive |
| CVE-2025-2580 | Contact Form by Bit Form <= 2.18.3 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload | bitpressadmin | Bit Form – Custom Contact Form, Multi Step, Conversational Form & Payment Form builder | Medium | 4.9 | 2025-04-25 05:25:06 | Deep Dive |
| CVE-2025-30885 | WordPress Bit Form plugin <= 2.18.0 - Open Redirection vulnerability | Bit Apps | Bit Form | Medium | 4.7 | 2025-03-27 10:55:42 | Deep Dive |
| CVE-2024-13450 | Contact Form by Bit Form <= 2.17.4 - Authenticated (Administrator+) Server-Side Request Forgery | bitpressadmin | Bit Form – Custom Contact Form, Multi Step, Conversational Form & Payment Form builder | Low | 3.8 | 2025-01-25 08:23:16 | Deep Dive |
| CVE-2024-12190 | Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder <= 2.17.3 - Missing Authorization to Authenticated (Subscriber+) Form Submission Disclosure | bitpressadmin | Bit Form – Custom Contact Form, Multi Step, Conversational Form & Payment Form builder | Medium | 4.3 | 2024-12-25 03:21:32 | Deep Dive |
| CVE-2024-9507 | Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder <= 2.15.2 - Authenticated (Administrator+) Improper Input Validation via iconUpload Function to Arbitrary File Read | bitpressadmin | Bit Form – Custom Contact Form, Multi Step, Conversational Form & Payment Form builder | Medium | 4.9 | 2024-10-11 07:37:46 | Deep Dive |
| CVE-2024-47335 | WordPress Bit Form plugin <= 2.13.11 - SQL Injection vulnerability | Bit Apps | Bit Form | High | 7.6 | 2024-10-07 05:31:04 | Deep Dive |
| CVE-2024-47301 | WordPress Bit Form plugin <= 2.13.10 - Cross Site Scripting (XSS) vulnerability | Bit Apps | Bit Form | High | 7.1 | 2024-10-06 11:35:24 | Deep Dive |
| CVE-2024-47319 | WordPress Bit Form plugin <= 2.13.10 - Arbitrary File Upload vulnerability | Bit Apps | Bit Form | High | 8.0 | 2024-10-05 12:30:10 | Deep Dive |
| CVE-2024-43251 | WordPress Bit Form Pro plugin <= 2.6.4 - Authenticated Sensitive Data Exposure vulnerability | Bit Apps | Bit Form Pro | Medium | 6.5 | 2024-08-26 20:17:34 | Deep Dive |
| CVE-2024-7780 | Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder 2.0 - 2.13.9 - Authenticated (Administrator+) SQL Injection | bitpressadmin | Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder | High | 7.2 | 2024-08-20 03:21:11 | Deep Dive |
| CVE-2024-7782 | Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder 2.0 - 2.13.4 - Authenticater (Administrator+) Arbitrary File Deletion | bitpressadmin | Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder | High | 8.7 | 2024-08-20 03:21:11 | Deep Dive |
| CVE-2024-7777 | Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder 2.0 - 2.13.9 - Authenticated (Administrator+) Arbitrary File Read And Deletion | bitpressadmin | Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder | Critical | 9.0 | 2024-08-20 03:21:09 | Deep Dive |
| CVE-2024-7702 | Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder 2.0 - 2.13.9 - Authenticated (Administrator+) SQL Injection via getLogHistory Function | bitpressadmin | Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder | High | 7.2 | 2024-08-20 03:21:08 | Deep Dive |
| CVE-2024-7775 | Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder 2.0 - 2.13.9 - Authenticated (Administrator+) Arbitrary JavaScript File Uploads | bitpressadmin | Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder | Medium | 5.5 | 2024-08-20 03:21:08 | Deep Dive |
| CVE-2024-43250 | WordPress Bit Form Pro plugin <= 2.6.4 - Authenticated Plugin Settings Change vulnerability | Bit Apps | Bit Form Pro | High | 7.1 | 2024-08-19 17:21:18 | Deep Dive |
| CVE-2024-43249 | WordPress Bit Form Pro plugin <= 2.6.4 - Authenticated Arbitrary File Upload vulnerability | Bit Apps | Bit Form Pro | Critical | 9.9 | 2024-08-19 17:19:08 | Deep Dive |