All 10 CVE vulnerabilities found in Forminator, with AI-generated Chinese analysis, references, and POCs.
Vendor: WPMU DEV
| CVE ID | Title | CVSS | Severity | Paused |
|---|---|---|---|---|
| CVE-2026-32409 | WordPress Forminator plugin <= 1.50.2 - Broken Access Control vulnerability CWE-862 | 9.1 | - | 2026-03-13 |
| CVE-2024-45625 | WordPress plugin Forminator Forms 安全漏洞 | 6.1AI | MediumAI | 2024-09-09 |
| CVE-2024-28890 | WordPress plugin Forminator 安全漏洞 | 9.8 | - | 2024-04-23 |
| CVE-2024-31077 | WordPress plugin Forminator 安全漏洞 | 7.2 | - | 2024-04-23 |
| CVE-2024-31857 | WordPress plugin Forminator 安全漏洞 | 6.1 | - | 2024-04-23 |
| CVE-2024-29777 | WordPress Forminator plugin <= 1.29.0 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 | 7.1 | High | 2024-03-27 |
| CVE-2023-5119 | Forminator and Forminator Pro < 1.27.0 - Admin+ Stored Cross-Site Scripting | 4.8AI | MediumAI | 2023-11-20 |
| CVE-2023-3134 | Forminator < 1.24.4 - Reflected XSS | 6.1 | - | 2023-07-31 |
| CVE-2023-2010 | Forminator < 1.24.1 - Unauthenticated Race Condition on poll vote | 5.3 | - | 2023-07-04 |
| CVE-2021-36821 | WordPress Forminator plugin <= 1.14.11 - Stored Cross-Site Scripting (XSS) vulnerability CWE-79 | 7.1 | High | 2023-03-16 |
All 10 known CVE vulnerabilities affecting Forminator with full Chinese analysis, references, and POCs where available.