| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2022-41134 | WordPress Optinly Plugin <= 1.0.15 is vulnerable to Cross Site Request Forgery (CSRF) | OptinlyHQ | Optinly – Exit Intent, Newsletter Popups, Gamification & Opt-in Forms | Medium | 5.4 | 2023-02-13 16:52:46 | Deep Dive |
| CVE-2022-38467 | WordPress CRM Perks Forms Plugin <= 1.1.0 is vulnerable to Reflected Cross Site Scripting (XSS) vulnerability | CRM Perks | CRM Perks Forms – WordPress Form Builder | Medium | 6.1 | 2023-01-14 10:14:12 | Deep Dive |
| CVE-2022-4120 | Stop Spammers Security < 2022.6 - Unauthenticated PHP Object Injection | Unknown | Stop Spammers Security | Block Spam Users, Comments, Forms | 超危 | - | 2022-12-26 12:28:20 | Deep Dive |
| CVE-2022-4042 | Paytium < 4.3.7 - Admin+ Stored XSS | Unknown | Paytium: Mollie payment forms & donations | 中危 | - | 2022-12-26 12:27:59 | Deep Dive |
| CVE-2022-4024 | Pie Register < 3.8.1.3 - Unauthenticated Arbitrary User Deletion | Unknown | Registration Forms | 中危 | - | 2022-12-19 13:41:40 | Deep Dive |
| CVE-2022-4519 | WP User <= 7.0 - Authenticated (Administrator+) Stored Cross-Site Scripting | walkeprashant | WP User – Custom Registration Forms, Login and User Profile | Medium | 5.5 | 2022-12-15 19:19:18 | Deep Dive |
| CVE-2022-3834 | Google Forms <= 0.95 - Admin+ Stored XSS | Unknown | Google Forms | 中危 | - | 2022-11-28 13:47:22 | Deep Dive |
| CVE-2022-3689 | HTML Forms < 1.3.25 - Admin+ SQLi | Unknown | HTML Forms | 高危 | - | 2022-11-28 13:47:10 | Deep Dive |
| CVE-2022-3463 | FluentForm < 4.3.13 - CSV Injection | Unknown | Contact Form Plugin – Fastest Contact Form Builder Plugin for WordPress by Fluent Forms | 超危 | - | 2022-11-07 00:00:00 | Deep Dive |
| CVE-2022-44628 | WordPress 4ECPS Web Forms plugin <= 0.2.17 - Auth. Stored Cross-Site Scripting (XSS) vulnerability | JumpDEMAND Inc. | 4ECPS Web Forms (WordPress plugin) | Medium | 4.8 | 2022-11-03 19:32:26 | Deep Dive |
| CVE-2021-36915 | WordPress Profile Builder plugin <= 3.6.0 - Cross-Site Request Forgery (CSRF) vulnerability | Cozmoslabs | Profile Builder – User Profile & User Registration Forms (WordPress plugin) | Medium | 4.2 | 2022-10-11 19:34:00 | Deep Dive |
| CVE-2022-3154 | Multiple Plugins from Viszt Peter - Multiple CSRF | TODO | Woo Billingo Plus | 高危 | - | 2022-10-10 00:00:00 | Deep Dive |
| CVE-2022-2405 | WP Popup Builder < 1.3.0 - Subscriber+ Arbitrary Popup Deletion | Unknown | WP Popup Builder – Popup Forms , Marketing PoPuP & Newsletter | 中危 | - | 2022-09-26 12:35:34 | Deep Dive |
| CVE-2022-2903 | NinjaForms < 3.6.13 - Admin+ PHP Objection Injection | Unknown | Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress | 高危 | - | 2022-09-26 12:35:34 | Deep Dive |
| CVE-2022-2404 | WP Popup Builder < 1.2.9 - Reflected Cross-Site Scripting | Unknown | WP Popup Builder – Popup Forms , Marketing PoPuP & Newsletter | 中危 | - | 2022-09-26 12:35:33 | Deep Dive |
| CVE-2022-36791 | WordPress Torro Forms plugin <= 1.0.16 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability | Awesome UG | Torro Forms (WordPress plugin) | Medium | 5.4 | 2022-09-23 14:22:10 | Deep Dive |
| CVE-2022-3142 | NEX-Forms < 7.9.7 - Authenticated SQLi | Unknown | NEX-Forms – Ultimate Form Builder – Contact forms and much more | 高危 | - | 2022-09-19 00:00:00 | Deep Dive |
| CVE-2022-40191 | WordPress Contact Form By Mega Forms plugin <= 1.2.4 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability | Ali Khallad | Contact Form By Mega Forms (WordPress plugin) | Medium | 5.4 | 2022-09-09 14:39:53 | Deep Dive |
| CVE-2021-25066 | Ninja Forms < 3.6.10 - Admin+ Stored Cross-Site Scripting via Import | Unknown | Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress | 中危 | - | 2022-07-04 13:05:27 | Deep Dive |
| CVE-2021-25056 | Ninja Forms < 3.6.10 - Admin+ Stored Cross-Site Scripting | Unknown | Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress | 中危 | - | 2022-07-04 13:05:21 | Deep Dive |