Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CRM Perks — Vulnerabilities & Security Advisories 59

Browse all 59 CVE security advisories affecting CRM Perks. AI-powered Chinese analysis, POCs, and references for each vulnerability.

CRM Perks operates as a customer relationship management platform designed to streamline sales processes and manage client interactions. Security audits have identified forty-nine distinct vulnerabilities within its infrastructure, highlighting significant exposure risks. The most prevalent flaw classes include remote code execution, cross-site scripting, and privilege escalation, which collectively allow attackers to compromise system integrity or access unauthorized data. These issues often stem from insufficient input validation and weak access controls, reflecting common pitfalls in web application development. While no major public data breaches have been widely reported, the high volume of recorded CVEs suggests persistent security gaps that require immediate remediation. Organizations relying on this solution must prioritize patching and rigorous security testing to mitigate the risk of exploitation. Continuous monitoring and adherence to secure coding standards are essential to reduce the attack surface and protect sensitive customer information from potential malicious actors targeting these known weaknesses.

Top products by CRM Perks: CRM Perks Forms Integration for Contact Form 7 HubSpot Connector for Gravity Forms and Google Sheets WP Gravity Forms FreshDesk Plugin WP Gravity Forms Constant Contact Plugin WP Gravity Forms Salesforce Integration for Contact Form 7 and Constant Contact WP Gravity Forms Keap/Infusionsoft WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms WP Gravity Forms HubSpot CRM Perks WP Gravity Forms Zoho CRM and Bigin Integration for Salesforce and Contact Form 7, WPForms, Elementor, Formidable, Ninja Forms Integration for Mailchimp and Contact Form 7, WPForms, Elementor, Ninja Forms WP Insightly for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms Integration for WooCommerce and QuickBooks CRM Perks Forms – WordPress Form Builder Contact Form Entries Integration for Contact Form 7 and Zoho CRM, Bigin Integration for Keap/infusionsoft and Contact Form 7, WPForms, Elementor, Formidable, Ninja Forms WP Gravity Forms Insightly Integration for ActiveCampaign and Contact Form 7, WPForms, Elementor, Ninja Forms Integration for WooCommerce and Salesforce WP Gravity Forms Zendesk WP Gravity Forms Dynamics CRM Integration for Google Sheets and Contact Form 7, WPForms, Elementor, Ninja Forms WP Dynamics CRM for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms Integration for Contact Form 7 and Salesforce Integration for Pipedrive and Contact Form 7, WPForms, Elementor, Ninja Forms Integration for HubSpot and Contact Form 7, WPForms, Elementor, Ninja Forms
CVE ID Title CVSS Severity Published
CVE-2025-49330 WordPress Integration for Contact Form 7 and Zoho CRM, Bigin plugin <= 1.3.0 - PHP Object Injection Vulnerability — Integration for Contact Form 7 and Zoho CRM, Bigin CWE-502 9.8 Critical 2025-06-17
CVE-2025-30953 WordPress WP Gravity Forms Salesforce plugin <= 1.4.7 - Open Redirection Vulnerability — WP Gravity Forms Salesforce CWE-601 4.7 Medium 2025-06-06
CVE-2025-30954 WordPress WP Gravity Forms Constant Contact Plugin <= 1.1.0 - Open Redirection Vulnerability — WP Gravity Forms Constant Contact Plugin CWE-601 4.7 Medium 2025-06-06
CVE-2025-47456 WordPress WP Gravity Forms Zendesk plugin <= 1.1.2 - Open Redirection Vulnerability — WP Gravity Forms Zendesk CWE-601 4.7 Medium 2025-05-07
CVE-2025-47455 WordPress Integration for WooCommerce and Salesforce plugin <= 1.7.5 - Open Redirection Vulnerability — Integration for WooCommerce and Salesforce CWE-601 4.7 Medium 2025-05-07
CVE-2025-47454 WordPress WP Gravity Forms Dynamics CRM plugin <= 1.1.4 - Open Redirection Vulnerability — WP Gravity Forms Dynamics CRM CWE-601 4.7 Medium 2025-05-07
CVE-2025-39558 WordPress CRM Perks plugin <= 1.1.7 - Reflected Cross Site Scripting (XSS) vulnerability — CRM Perks CWE-79 7.1 High 2025-04-17
CVE-2025-39600 WordPress Integration for WooCommerce and QuickBooks plugin <= 1.3.1 - Cross Site Request Forgery (CSRF) Vulnerability — Integration for WooCommerce and QuickBooks CWE-352 4.3 Medium 2025-04-16
CVE-2025-32269 WordPress WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms Plugin <= 1.1.3 - Cross Site Request Forgery (CSRF) to Settings Change vulnerability — WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms CWE-352 4.3 Medium 2025-04-04
CVE-2025-30863 WordPress Integration for Google Sheets and Contact Form 7, WPForms, Elementor, Ninja Forms plugin <= 1.0.9 - Cross Site Request Forgery (CSRF) vulnerability — Integration for Google Sheets and Contact Form 7, WPForms, Elementor, Ninja Forms CWE-352 4.3 Medium 2025-03-27
CVE-2025-24558 WordPress CRM Perks plugin <= 1.1.5 - Reflected Cross Site Scripting (XSS) vulnerability — CRM Perks CWE-79 7.1 High 2025-02-14
CVE-2025-24708 WordPress WP Dynamics CRM plugin <= 1.1.6 - Reflected Cross Site Scripting (XSS) vulnerability — WP Dynamics CRM for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms CWE-79 7.1 High 2025-01-27
CVE-2024-37463 WordPress CRM Perks Forms plugin <= 1.1.5 - Broken Access Control vulnerability — CRM Perks Forms CWE-862 5.3 Medium 2024-11-01
CVE-2024-34755 WordPress Integration for Salesforce and Contact Form 7, WPForms, Elementor, Formidable, Ninja Forms plugin <= 1.3.9 - Cross Site Request Forgery (CSRF) vulnerability — Integration for Contact Form 7 and Salesforce CWE-352 4.3 Medium 2024-05-17
CVE-2024-34756 WordPress Integration for HubSpot and Contact Form 7 plugin <= 1.3.1 - Cross Site Request Forgery (CSRF) vulnerability — Integration for Contact Form 7 HubSpot CWE-352 4.3 Medium 2024-05-17
CVE-2024-34817 WordPress Integration for Pipedrive and Contact Form 7, WPForms, Elementor, Ninja Forms plugin <= 1.2.0 - Cross Site Request Forgery (CSRF) vulnerability — Integration for Pipedrive and Contact Form 7, WPForms, Elementor, Ninja Forms CWE-352 4.3 Medium 2024-05-10
CVE-2024-30446 WordPress CRM Perks Forms plugin <= 1.1.4 - Cross Site Scripting (XSS) vulnerability — CRM Perks Forms CWE-79 6.5 Medium 2024-03-29
CVE-2024-30499 WordPress CRM Perks Forms plugin <= 1.1.4 - SQL Injection vulnerability — CRM Perks Forms CWE-89 8.5 High 2024-03-29
CVE-2024-30498 WordPress CRM Perks Forms plugin <= 1.1.4 - Unauthenticated SQL Injection vulnerability — CRM Perks Forms CWE-89 9.3 Critical 2024-03-29
CVE-2023-51536 WordPress CRM Perks Forms Plugin <= 1.1.2 is vulnerable to Cross Site Scripting (XSS) — CRM Perks Forms – WordPress Form Builder CWE-79 5.9 Medium 2024-02-01
CVE-2023-31095 WordPress Integration for Contact Form 7 HubSpot Plugin <= 1.2.8 is vulnerable to Open Redirection — Integration for HubSpot and Contact Form 7, WPForms, Elementor, Ninja Forms CWE-601 4.7 Medium 2023-12-29
CVE-2023-37982 WordPress Integration for Contact Form 7 and Salesforce Plugin <= 1.3.3 is vulnerable to Open Redirection — Integration for Salesforce and Contact Form 7, WPForms, Elementor, Ninja Forms CWE-601 4.7 Medium 2023-12-19
CVE-2023-38478 WordPress Integration for WooCommerce and QuickBooks Plugin <= 1.2.3 is vulnerable to Open Redirection — Integration for WooCommerce and QuickBooks CWE-601 4.7 Medium 2023-12-19
CVE-2023-38481 WordPress Integration for WooCommerce and Zoho CRM Plugin < 1.3.7 is vulnerable to Open Redirection — Integration for WooCommerce and Zoho CRM, Books, Invoice, Inventory, Bigin CWE-601 4.7 Medium 2023-12-19
CVE-2023-47779 WordPress Integration for Contact Form 7 and Constant Contact Plugin <= 1.1.4 is vulnerable to Open Redirection — Integration for Constant Contact and Contact Form 7, WPForms, Elementor, Ninja Forms CWE-601 4.7 Medium 2023-12-07
CVE-2023-31212 WordPress Contact Form Entries Plugin <= 1.3.0 is vulnerable to SQL Injection — Database for Contact Form 7, WPforms, Elementor forms CWE-89 8.5 High 2023-10-31
CVE-2023-33311 WordPress Contact Form Entries Plugin <= 1.3.0 is vulnerable to Cross Site Scripting (XSS) — Contact Form Entries CWE-79 6.5 Medium 2023-05-28
CVE-2023-25976 WordPress Integration for Contact Form 7 and Zoho CRM, Bigin Plugin <= 1.2.2 is vulnerable to Cross Site Request Forgery (CSRF) — Integration for Contact Form 7 and Zoho CRM, Bigin CWE-352 4.3 Medium 2023-05-26
CVE-2022-38467 WordPress CRM Perks Forms Plugin <= 1.1.0 is vulnerable to Reflected Cross Site Scripting (XSS) vulnerability — CRM Perks Forms – WordPress Form Builder CWE-79 6.1 Medium 2023-01-14

This page lists every published CVE security advisory associated with CRM Perks. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.