All 7 CVE vulnerabilities found in Multi Step Form, with AI-generated Chinese analysis, references, and POCs.
Vendor: Unknown
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-9515 | Multi Step Form <= 1.7.25 - Authenticated (Admin+) Arbitrary File Upload CWE-434 | 7.2 | High | 2025-09-06 |
| CVE-2024-12427 | Multi Step Form <= 1.7.23 - Missing Authorization to Unauthenticated Limited File Upload CWE-862 | 5.3 | Medium | 2025-01-16 |
| CVE-2024-50428 | WordPress Multi Step Form plugin <= 1.7.21 - Broken Access Control vulnerability CWE-862 | 4.3 | Medium | 2024-10-29 |
| CVE-2024-25905 | WordPress Multi Step Form Plugin <= 1.7.18 is vulnerable to Cross Site Request Forgery (CSRF) CWE-352 | 5.4 | Medium | 2024-02-21 |
| CVE-2023-50832 | WordPress Multi Step Form Plugin <= 1.7.13 is vulnerable to Cross Site Scripting (XSS) CWE-79 | 5.9 | Medium | 2023-12-21 |
| CVE-2023-47758 | WordPress Multi Step Form Plugin <= 1.7.11 is vulnerable to Cross Site Request Forgery (CSRF) CWE-352 | 5.4 | Medium | 2023-11-22 |
| CVE-2022-4196 | Multi Step Form < 1.7.8 - Admin+ Stored XSS | 4.8 | - | 2023-01-09 |
All 7 known CVE vulnerabilities affecting Multi Step Form with full Chinese analysis, references, and POCs where available.