cleantalk
Vulnerabilities and Security Researches

Contact Form Builder Plugin: Multi Step Contact Form, Payment Form, Custom Contact Form Plugin by Bit Form, CVE-2024-47335

CVE, Research URL

CVE-2024-47335

Published on
Oct 07, 2024
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Bit Form Bit Form – Contact Form Plugin allows SQL Injection.This issue affects Bit Form – Contact Form Plugin: from n/a through 2.13.11.
Affected versions
Min -, max 2.13.12.
Status
vulnerable