| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-33328 | WordPress MailChimp Subscribe Forms Plugin <= 4.0.9.1 is vulnerable to Cross Site Scripting (XSS) | PluginOps | MailChimp Subscribe Form | Medium | 5.9 | 2023-05-28 17:47:13 | Deep Dive |
| CVE-2023-33212 | WordPress JetFormBuilder Plugin <= 3.0.6 is vulnerable to Cross Site Request Forgery (CSRF) | Crocoblock | JetFormBuilder — Dynamic Blocks Form Builder | Medium | 4.3 | 2023-05-28 17:20:01 | Deep Dive |
| CVE-2023-25976 | WordPress Integration for Contact Form 7 and Zoho CRM, Bigin Plugin <= 1.2.2 is vulnerable to Cross Site Request Forgery (CSRF) | CRM Perks | Integration for Contact Form 7 and Zoho CRM, Bigin | Medium | 4.3 | 2023-05-26 11:13:08 | Deep Dive |
| CVE-2022-45364 | WordPress Drag and Drop Multiple File Upload – Contact Form 7 Plugin <= 1.3.6.5 is vulnerable to Cross Site Request Forgery (CSRF) | Glen Don L. Mongaya | Drag and Drop Multiple File Upload – Contact Form 7 | Medium | 5.4 | 2023-05-24 15:48:57 | Deep Dive |
| CVE-2023-28408 | WordPress plugin MW WP Form 路径遍历漏洞 | Monkey Wrench Inc. | MW WP Form | 超危 | - | 2023-05-23 00:00:00 | Deep Dive |
| CVE-2023-28409 | WordPress plugin MW WP Form 代码问题漏洞 | Monkey Wrench Inc. | MW WP Form | 超危 | - | 2023-05-23 00:00:00 | Deep Dive |
| CVE-2023-2528 | Contact Form by Supsystic <= 1.7.24 - Cross-Site Request Forgery via AJAX action | supsysticcom | Contact Form by Supsystic | Medium | 5.4 | 2023-05-16 23:35:31 | Deep Dive |
| CVE-2023-1835 | Ninja Forms < 3.6.22 - Reflected XSS | Unknown | Ninja Forms Contact Form | 中危 | - | 2023-05-15 12:15:46 | Deep Dive |
| CVE-2022-4774 | Bit Form < 1.9 - RCE via Unauthenticated Arbitrary File Upload | Unknown | Bit Form | 超危 | - | 2023-05-15 12:15:45 | Deep Dive |
| CVE-2023-22703 | WordPress WCP Contact Form Plugin <= 3.1.0 is vulnerable to Cross Site Scripting (XSS) | Webcodin | WCP Contact Form | High | 7.1 | 2023-05-15 10:28:16 | Deep Dive |
| CVE-2023-23812 | WordPress Enhanced WP Contact Form Plugin <= 2.2.3 is vulnerable to Cross Site Scripting (XSS) | Joost de Valk | Enhanced WP Contact Form | Medium | 5.9 | 2023-05-10 07:38:58 | Deep Dive |
| CVE-2023-27510 | Jubei JB inquiry form 安全漏洞 | Jubei Inc. | JB Inquiry form | 高危 | - | 2023-05-10 00:00:00 | Deep Dive |
| CVE-2022-46799 | WordPress Easy Testimonial Slider and Form Plugin <= 1.0.15 is vulnerable to Cross Site Scripting (XSS) | I Thirteen Web Solution | Easy Testimonial Slider and Form | High | 7.1 | 2023-05-08 11:44:30 | Deep Dive |
| CVE-2022-47608 | WordPress Quick Contact Form Plugin <= 8.0.3.1 is vulnerable to Cross Site Scripting (XSS) | Fullworks | Quick Contact Form | Medium | 5.9 | 2023-04-25 16:56:57 | Deep Dive |
| CVE-2023-24386 | WordPress AI Contact Us Form Plugin <= 1.0 is vulnerable to Cross Site Scripting (XSS) | Karishma Arora | AI Contact Us Form | Medium | 5.9 | 2023-04-23 09:38:17 | Deep Dive |
| CVE-2023-30616 | Cross Site Request Forgery due to missing nonce verification in form block | epiphyt | form-block | Medium | 6.5 | 2023-04-20 17:14:08 | Deep Dive |
| CVE-2022-45838 | WordPress ARForms Form Builder Plugin <= 1.5.5 is vulnerable to Cross Site Scripting (XSS) | Repute InfoSystems | ARForms Form Builder | Medium | 6.1 | 2023-04-18 12:11:09 | Deep Dive |
| CVE-2023-1282 | Drag and Drop Multiple File Upload PRO - Reflected Cross-Site Scripting | Unknown | Drag and Drop Multiple File Upload PRO - Contact Form 7 Standard | 中危 | - | 2023-04-17 12:17:42 | Deep Dive |
| CVE-2023-0546 | FluentForms < 4.3.25 - Contributor+ Stored XSS via Custom HTML Form Field | Unknown | Contact Form Plugin | 中危 | - | 2023-04-10 13:18:07 | Deep Dive |
| CVE-2014-125095 | BestWebSoft Contact Form Plugin bws_menu.php bws_add_menu_render cross site scripting | BestWebSoft | Contact Form Plugin | Low | 3.5 | 2023-04-09 05:31:04 | Deep Dive |