cleantalk
Vulnerabilities and Security Researches

Forminator – Contact Form, Payment Form & Custom Form Builder, CVE-2024-31857

CVE, Research URL

CVE-2024-31857

Published on
Apr 23, 2024
Research Description
Forminator prior to 1.15.4 contains a cross-site scripting vulnerability. If this vulnerability is exploited, a remote attacker may obtain user information etc. and alter the page contents on the user's web browser.
Affected versions
Min -, max 1.15.4.
Status
vulnerable