All 4 CVE vulnerabilities found in Contact Form Widget, with AI-generated Chinese analysis, references, and POCs.
Vendor: A WP Life
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-62134 | WordPress Contact Form Widget plugin <= 1.5.1 - Cross Site Request Forgery (CSRF) vulnerability CWE-352 | 5.4 | Medium | 2025-12-31 |
| CVE-2025-47491 | WordPress Contact Form Widget plugin <= 1.4.6 - Cross Site Request Forgery (CSRF) Vulnerability CWE-352 | 7.4 | High | 2025-05-07 |
| CVE-2024-48037 | WordPress Contact Form Widget plugin <= 1.4.2 - CSRF vulnerability CWE-352 | 5.4 | Medium | 2024-10-17 |
| CVE-2024-34754 | WordPress Contact Form Widget plugin <= 1.3.9 - Sensitive Data Exposure vulnerability CWE-200 | 5.3 | Medium | 2024-06-03 |
All 4 known CVE vulnerabilities affecting Contact Form Widget with full Chinese analysis, references, and POCs where available.