Vulnerabilities and security researches forcontact-form-7-skins contact-form-7-skins
Direction: ascendingJun 06, 2024
CF7 Skins for Contact Form 7 # CVE-2021-25063
- CVE, Research URL
- Home page URL
- Application
- Date
- Feb 01, 2022
- Research Description
- The Skins for Contact Form 7 WordPress plugin before 2.5.1 does not sanitise and escape the tab parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting
- Affected versions
-
max 2.5.1.
- Status
-
vulnerable