| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2022-45364 | WordPress Drag and Drop Multiple File Upload – Contact Form 7 Plugin <= 1.3.6.5 is vulnerable to Cross Site Request Forgery (CSRF) | Glen Don L. Mongaya | Drag and Drop Multiple File Upload – Contact Form 7 | Medium | 5.4 | 2023-05-24 15:48:57 | Deep Dive |
| CVE-2022-46864 | WordPress Woocommerce Custom Checkout Fields Editor With Drag & Drop Plugin <= 0.1 is vulnerable to Cross Site Scripting (XSS) | Umair Saleem | Woocommerce Custom Checkout Fields Editor With Drag & Drop | High | 7.1 | 2023-05-09 11:33:38 | Deep Dive |
| CVE-2023-1282 | Drag and Drop Multiple File Upload PRO - Reflected Cross-Site Scripting | Unknown | Drag and Drop Multiple File Upload PRO - Contact Form 7 Standard | 中危 | - | 2023-04-17 12:17:42 | Deep Dive |
| CVE-2023-1112 | Drag and Drop Multiple File Upload Contact Form 7 admin-ajax.php path traversal | - | Drag and Drop Multiple File Upload Contact Form 7 | Medium | 4.7 | 2023-03-01 09:54:39 | Deep Dive |
| CVE-2023-0173 | WPFunnels < 2.6.9 - Contributor+ Stored XSS | Unknown | Drag & Drop Sales Funnel Builder for WordPress | 中危 | - | 2023-02-06 19:59:32 | Deep Dive |
| CVE-2022-46147 | Drag and Drop XBlock v2 has XSS Issues in Xblock Input Fields | openedx | xblock-drag-and-drop-v2 | High | 8.4 | 2022-11-28 00:00:00 | Deep Dive |
| CVE-2022-3300 | Form Maker by 10Web < 1.15.6 - Admin+ SQLI | Unknown | Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder | 高危 | - | 2022-10-25 00:00:00 | Deep Dive |
| CVE-2022-3282 | Drag and Drop Multiple File Upload < 1.3.6.5 - File Upload Size Limit Bypass | Unknown | Drag and Drop Multiple File Upload – Contact Form 7 | 中危 | - | 2022-10-17 00:00:00 | Deep Dive |
| CVE-2022-2903 | NinjaForms < 3.6.13 - Admin+ PHP Objection Injection | Unknown | Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress | 高危 | - | 2022-09-26 12:35:34 | Deep Dive |
| CVE-2022-2395 | weForms < 1.6.14 - Admin+ Stored Cross-Site Scripting | Unknown | weForms – Easy Drag & Drop Contact Form Builder For WordPress | 中危 | - | 2022-08-08 13:48:42 | Deep Dive |
| CVE-2021-25066 | Ninja Forms < 3.6.10 - Admin+ Stored Cross-Site Scripting via Import | Unknown | Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress | 中危 | - | 2022-07-04 13:05:27 | Deep Dive |
| CVE-2021-25056 | Ninja Forms < 3.6.10 - Admin+ Stored Cross-Site Scripting | Unknown | Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress | 中危 | - | 2022-07-04 13:05:21 | Deep Dive |
| CVE-2022-1569 | WordPress Forms by Pie Forms < 1.4.9.4 - Admin+ Stored Cross-Site Scripting | Unknown | Drag & Drop Builder, Human Face Detector, Pre-built Templates, Spam Protection, User Email Notifications & more! | 中危 | - | 2022-06-06 08:51:06 | Deep Dive |
| CVE-2022-1564 | Form Maker By 10Web < 1.14.12 - Admin+ Stored Cross-Site Scripting | Unknown | Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder | 中危 | - | 2022-05-30 08:35:57 | Deep Dive |
| CVE-2021-25048 | KingComposer <= 2.9.6 - Subscriber+ Stored Cross-Site Scripting | Unknown | Page Builder: KingComposer – Free Drag and Drop page builder by King-Theme | 中危 | - | 2022-04-04 15:35:37 | Deep Dive |
| CVE-2022-0595 | Drag and Drop Multiple File Upload - Contact Form 7 < 1.3.6.3 - Unauthenticated Stored XSS | Unknown | Drag and Drop Multiple File Upload – Contact Form 7 | 中危 | - | 2022-03-28 17:22:57 | Deep Dive |
| CVE-2022-0165 | Page Builder KingComposer <= 2.9.6 - Open Redirect | Unknown | Page Builder: KingComposer – Free Drag and Drop page builder by King-Theme | 中危 | - | 2022-03-14 14:41:21 | Deep Dive |
| CVE-2022-23988 | WS Form < 1.8.176 - Unauthenticated Stored Cross-Site Scripting | WS Form | WS Form LITE – Drag & Drop Contact Form Builder for WordPress | 中危 | - | 2022-02-28 09:07:03 | Deep Dive |
| CVE-2022-23987 | WS Form < 1.8.176 - Admin+ Stored Cross-Site Scripting | WS Form | WS Form LITE – Drag & Drop Contact Form Builder for WordPress | 中危 | - | 2022-02-28 09:07:01 | Deep Dive |
| CVE-2022-0360 | WP Ultimate CSV Importer < 6.4.3 - Admin+ Stored Cross-Site Scripting | Unknown | Easy Drag And drop All Import : WP Ultimate CSV Importer | 中危 | - | 2022-02-28 09:06:48 | Deep Dive |