| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-0143 | Send PDF for Contact Form 7 < 0.9.9.2 - Contributor+ Stored XSS via Shortcode | Unknown | Send PDF for Contact Form 7 | 中危 | - | 2023-02-06 19:59:17 | Deep Dive |
| CVE-2022-38467 | WordPress CRM Perks Forms Plugin <= 1.1.0 is vulnerable to Reflected Cross Site Scripting (XSS) vulnerability | CRM Perks | CRM Perks Forms – WordPress Form Builder | Medium | 6.1 | 2023-01-14 10:14:12 | Deep Dive |
| CVE-2012-10005 | manikandan170890 php-form-builder-class Textarea Textarea.php cross site scripting | manikandan170890 | php-form-builder-class | Low | 3.5 | 2023-01-12 15:02:36 | Deep Dive |
| CVE-2022-4196 | Multi Step Form < 1.7.8 - Admin+ Stored XSS | Unknown | Multi Step Form | 中危 | - | 2023-01-09 22:13:40 | Deep Dive |
| CVE-2021-4284 | OpenMRS HTML Form Entry UI Framework Integration Module cross site scripting | OpenMRS | HTML Form Entry UI Framework Integration Module | Low | 3.5 | 2022-12-27 09:51:38 | Deep Dive |
| CVE-2022-4226 | Simple Basic Contact Form < 20221201 - Admin+ Stored XSS | Unknown | Simple Basic Contact Form | 中危 | - | 2022-12-26 12:28:13 | Deep Dive |
| CVE-2022-4697 | ProfilePress <= 4.5.0 - Authenticated (Administrator+) Stored Cross-Site Scripting | properfraction | Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress | Medium | 5.5 | 2022-12-23 15:11:46 | Deep Dive |
| CVE-2022-4698 | ProfilePress <= 4.5.0 - Authenticated (Administrator+) Stored Cross-Site Scripting via Form Settings | properfraction | Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress | Medium | 5.5 | 2022-12-23 15:09:51 | Deep Dive |
| CVE-2022-3906 | Easy Form Builder < 3.4.0 - Admin+ Stored XSS | Unknown | Easy Form Builder | 中危 | - | 2022-12-12 17:54:52 | Deep Dive |
| CVE-2022-3634 | Contact Form 7 Database Addon < 1.2.6.5 - CSV Injection | Unknown | Contact Form 7 Database Addon | 超危 | - | 2022-11-21 00:00:00 | Deep Dive |
| CVE-2022-3463 | FluentForm < 4.3.13 - CSV Injection | Unknown | Contact Form Plugin – Fastest Contact Form Builder Plugin for WordPress by Fluent Forms | 超危 | - | 2022-11-07 00:00:00 | Deep Dive |
| CVE-2022-3300 | Form Maker by 10Web < 1.15.6 - Admin+ SQLI | Unknown | Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder | 高危 | - | 2022-10-25 00:00:00 | Deep Dive |
| CVE-2022-3350 | Contact Bank <= 3.0.30 - Admin+ Stored Cross-Site Scripting | Unknown | Contact Bank – Contact Form Builder for WordPress | 中危 | - | 2022-10-25 00:00:00 | Deep Dive |
| CVE-2022-3282 | Drag and Drop Multiple File Upload < 1.3.6.5 - File Upload Size Limit Bypass | Unknown | Drag and Drop Multiple File Upload – Contact Form 7 | 中危 | - | 2022-10-17 00:00:00 | Deep Dive |
| CVE-2021-36913 | Redirection for Contact Form 7 <= 2.4.0 - Unauthenticated Options Change and Content Injection vulnerability | Qube One | Redirection for Contact Form 7 (WordPress plugin) | High | 7.5 | 2022-10-11 17:04:23 | Deep Dive |
| CVE-2022-3220 | Advanced Comment Form < 1.2.1 - Admin+ Authenticated Stored XSS | Unknown | Advanced Comment Form | 中危 | - | 2022-10-10 00:00:00 | Deep Dive |
| CVE-2022-3070 | Generate PDF using Contact Form 7 < 3.6 - Admin+ Stored Cross-Site Scripting | Unknown | Generate PDF using Contact Form 7 | 中危 | - | 2022-09-26 12:35:40 | Deep Dive |
| CVE-2022-2903 | NinjaForms < 3.6.13 - Admin+ PHP Objection Injection | Unknown | Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress | 高危 | - | 2022-09-26 12:35:34 | Deep Dive |
| CVE-2022-2567 | Form Builder CP < 1.2.32 - Admin+ Stored Cross-Site Scripting | Unknown | Form Builder CP | 中危 | - | 2022-09-19 14:00:54 | Deep Dive |
| CVE-2022-3142 | NEX-Forms < 7.9.7 - Authenticated SQLi | Unknown | NEX-Forms – Ultimate Form Builder – Contact forms and much more | 高危 | - | 2022-09-19 00:00:00 | Deep Dive |