Contact Form 7 Widget For Elementor Page Builder & Gutenberg Blocks, CVE-2025-54015
- CVE, Research URL
- Home page URL
-
Security reports for Contact Form 7 Widget For Elementor Page Builder & Gutenberg Blocks
- Published on
- Jul 16, 2025
- Research Description
- Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in HT Plugins HT Contact Form 7 allows PHP Local File Inclusion. This issue affects HT Contact Form 7: from n/a through 2.0.0.
- Affected versions
-
max 2.1.0.
- Status
-
vulnerable
| Previous vulnerability researches |
|---|
| WP Customize Login Page (CVE-2025-46477) , Apr 26, 2025 |
| WP Customize Login Page (CVE-2025-46485) , Apr 26, 2025 |
| Customize Login Page (CVE-2025-31034) , Apr 11, 2025 |