| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-31212 | WordPress Contact Form Entries Plugin <= 1.3.0 is vulnerable to SQL Injection | CRM Perks | Database for Contact Form 7, WPforms, Elementor forms | 超危 | - | 2023-10-31 14:04:44 | Deep Dive |
| CVE-2023-5098 | Campaign Monitor Forms < 2.5.6 - Subscriber+ Arbitrary Options Update | Unknown | Campaign Monitor Forms by Optin Cat | 中危 | - | 2023-10-31 13:54:44 | Deep Dive |
| CVE-2023-5073 | iframe forms <= 1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via iframe Shortcode | jrbecart | iframe forms | Medium | 6.4 | 2023-10-31 11:29:12 | Deep Dive |
| CVE-2023-45748 | WordPress MailChimp Forms by MailMunch Plugin <= 3.1.4 is vulnerable to Cross Site Request Forgery (CSRF) | MailMunch | MailChimp Forms by MailMunch | Medium | 4.3 | 2023-10-16 10:01:16 | Deep Dive |
| CVE-2023-45647 | WordPress Constant Contact Forms by MailMunch Plugin <= 2.0.10 is vulnerable to Cross Site Request Forgery (CSRF) | MailMunch | Constant Contact Forms by MailMunch | Medium | 5.4 | 2023-10-16 09:58:02 | Deep Dive |
| CVE-2023-44997 | WordPress WP Forms Puzzle Captcha Plugin <= 4.1 is vulnerable to Cross Site Request Forgery (CSRF) | Nitin Rathod | WP Forms Puzzle Captcha | Medium | 5.4 | 2023-10-11 07:57:45 | Deep Dive |
| CVE-2023-5468 | Slick Contact Forms <= 1.3.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode | remix4 | Slick Contact Forms | Medium | 6.4 | 2023-10-10 04:29:38 | Deep Dive |
| CVE-2023-44474 | WordPress Tiger Forms Plugin <= 2.0.0 is vulnerable to Cross Site Scripting (XSS) | MD Jakir Hosen | Tiger Forms – Drag and Drop Form Builder | High | 7.1 | 2023-10-02 08:53:04 | Deep Dive |
| CVE-2023-5134 | Easy Registration Forms <= 2.1.1 - Authenticated (Subscriber+) Information Disclosure via Shortcode | easyregistrationforms | Easy Registration Forms | Medium | 4.3 | 2023-09-23 07:34:02 | Deep Dive |
| CVE-2023-4109 | Ninja Forms < 3.6.26 - Admin+ Stored HTML Injection | Unknown | Ninja Forms Contact Form | 中危 | - | 2023-08-30 14:22:02 | Deep Dive |
| CVE-2023-4404 | Donation Forms by Charitable <= 1.7.0.12 - Unauthenticated Privilege Escalation | smub | Charitable – Donation Plugin for WordPress – Fundraising with Recurring Donations & More | Critical | 9.8 | 2023-08-23 01:58:03 | Deep Dive |
| CVE-2023-23900 | WordPress Easy Forms for Mailchimp Plugin <= 6.8.8 is vulnerable to Cross Site Scripting (XSS) | YIKES, Inc. | Easy Forms for Mailchimp | Medium | 5.8 | 2023-08-10 11:30:37 | Deep Dive |
| CVE-2022-4888 | Multiple Plugins from Addify - Multiple CSRF | Unknown | Checkout Fields Manager | 中危 | - | 2023-07-31 09:37:33 | Deep Dive |
| CVE-2023-37979 | WordPress Ninja Forms Plugin <= 3.6.25 is vulnerable to Cross Site Scripting (XSS) | Saturday Drive | Ninja Forms Contact Form | High | 7.1 | 2023-07-27 14:08:06 | Deep Dive |
| CVE-2023-0439 | NEX-Forms < 8.4.4 - Authenticated Stored XSS | Unknown | NEX-Forms | 中危 | - | 2023-07-17 13:29:59 | Deep Dive |
| CVE-2023-2330 | Caldera Forms Google Sheets Connector < 1.3 - Access Code Update via CSRF | Unknown | Caldera Forms Google Sheets Connector | 高危 | - | 2023-07-17 13:29:58 | Deep Dive |
| CVE-2023-2324 | Elementor Forms Google Sheet Connector < 1.0.7 - Reflected XSS | Unknown | Elementor Forms Google Sheet Connector | 中危 | - | 2023-07-04 07:23:26 | Deep Dive |
| CVE-2023-2333 | Ninja Forms Google Sheet Connector < 1.2.7 - Reflected XSS | Unknown | Ninja Forms Google Sheet Connector | 中危 | - | 2023-07-04 07:23:24 | Deep Dive |
| CVE-2023-32623 | WordPress Plugin Snow Monkey Forms 路径遍历漏洞 | Monkey Wrench Inc. | Snow Monkey Forms | 超危 | - | 2023-06-28 04:16:56 | Deep Dive |
| CVE-2023-2326 | Gravity Forms Google Sheet Connector < 1.3.5 - Access Code Update via CSRF | Unknown | Gravity Forms Google Sheet Connector | 中危 | - | 2023-06-27 13:17:25 | Deep Dive |