| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-1835 | Ninja Forms < 3.6.22 - Reflected XSS | Unknown | Ninja Forms Contact Form | 中危 | - | 2023-05-15 12:15:46 | Deep Dive |
| CVE-2022-47441 | WordPress Charitable Plugin <= 1.7.0.10 is vulnerable to Cross Site Scripting (XSS) | Charitable Donations & Fundraising Team | Donation Forms by Charitable | High | 7.1 | 2023-05-10 10:10:11 | Deep Dive |
| CVE-2023-2114 | NEX-Forms < 8.4 - Admin+ SQL Injection | Unknown | NEX-Forms | 高危 | - | 2023-05-08 13:58:09 | Deep Dive |
| CVE-2023-2297 | Profile Builder – User Profile & User Registration Forms <= 3.9.0 - Insecure Password Reset Mechanism | cozmoslabs | User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor | Critical | 9.8 | 2023-04-26 23:30:18 | Deep Dive |
| CVE-2023-1324 | Easy Forms for MailChimp < 6.8.8 - Reflected XSS | Unknown | Easy Forms for Mailchimp | 中危 | - | 2023-04-24 18:30:54 | Deep Dive |
| CVE-2022-44631 | WordPress 1app Business Forms Plugin <= 1.0.0 is vulnerable to Cross Site Scripting (XSS) | 1app Technologies, Inc | 1app Business Forms | Medium | 4.8 | 2023-04-23 08:48:10 | Deep Dive |
| CVE-2023-1325 | Easy Forms for MailChimp < 6.8.7 - Contributor+ Stored XSS | Unknown | Easy Forms for Mailchimp | 中危 | - | 2023-04-17 12:17:40 | Deep Dive |
| CVE-2023-1903 | Missing Authorization check in SAP HCM Fiori App My Forms (Fiori 2.0) | SAP | HCM Fiori App My Forms (Fiori 2.0) | Medium | 4.3 | 2023-04-11 02:31:13 | Deep Dive |
| CVE-2023-28789 | WordPress Contact Forms by Cimatti Plugin <= 1.5.4 is vulnerable to Cross Site Scripting (XSS) | Cimatti Consulting | WordPress Contact Forms by Cimatti | High | 7.1 | 2023-04-07 14:12:32 | Deep Dive |
| CVE-2023-28781 | WordPress Contact Forms by Cimatti Plugin <= 1.5.4 is vulnerable to Cross Site Scripting (XSS) | Cimatti Consulting | WordPress Contact Forms by Cimatti | High | 7.1 | 2023-04-07 14:08:40 | Deep Dive |
| CVE-2023-23981 | WordPress Conversational Forms for ChatBot Plugin <= 1.1.6 is vulnerable to Cross Site Scripting (XSS) | QuantumCloud | Conversational Forms for ChatBot | Medium | 5.9 | 2023-04-06 04:43:22 | Deep Dive |
| CVE-2023-0272 | NEX-Forms < 8.3.3 - Contributor+ Stored XSS | Unknown | NEX-Forms | 中危 | - | 2023-03-27 15:37:41 | Deep Dive |
| CVE-2023-0816 | Formidable Forms < 6.1 - IP Spoofing | Unknown | Formidable Forms | 中危 | - | 2023-03-27 15:37:17 | Deep Dive |
| CVE-2022-38971 | WordPress BuddyForms Plugin <= 2.7.5 is vulnerable to Cross Site Scripting (XSS) | ThemeKraft | Post Form – Registration Form – Profile Form for User Profiles and Content Forms for User Submissions | Medium | 4.7 | 2023-03-16 08:49:16 | Deep Dive |
| CVE-2013-10020 | MMDeveloper A Forms Plugin a-forms.php cross site scripting | MMDeveloper | A Forms Plugin | Low | 3.5 | 2023-03-10 01:00:04 | Deep Dive |
| CVE-2020-36670 | NEX-Forms <= 7.7.1 - Missing Authorization on Various AJAX Actions | webaways | NEX-Forms – Ultimate Forms Plugin for WordPress | Medium | 6.3 | 2023-03-07 15:34:03 | Deep Dive |
| CVE-2023-24419 | WordPress Formidable Forms Plugin <= 5.5.6 is vulnerable to Cross Site Request Forgery (CSRF) | Strategy11 Form Builder Team | Formidable Forms | High | 7.1 | 2023-02-28 13:35:37 | Deep Dive |
| CVE-2022-43459 | WordPress Forms by CaptainForm Plugin <= 2.5.3 is vulnerable to Cross Site Request Forgery (CSRF) | Captainform | Forms by CaptainForm – Form Builder for WordPress | Medium | 5.4 | 2023-02-28 13:30:00 | Deep Dive |
| CVE-2023-0552 | Pie Register < 3.8.2.3 - Open Redirect | Unknown | Registration Forms | 中危 | - | 2023-02-27 15:24:31 | Deep Dive |
| CVE-2023-0814 | Profile Builder – User Profile & User Registration Forms <= 3.9.0 - Sensitive Information Disclosure via Shortcode | cozmoslabs | User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor | Medium | 6.5 | 2023-02-14 01:13:13 | Deep Dive |