Contact Form 7 Widget For Elementor Page Builder & Gutenberg Blocks, CVE-2025-54015
- CVE, Research URL
- Home page URL
-
Security reports for Contact Form 7 Widget For Elementor Page Builder & Gutenberg Blocks
- Published on
- Jul 16, 2025
- Research Description
- Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in HT Plugins HT Contact Form 7 ht-contactform allows PHP Local File Inclusion.This issue affects HT Contact Form 7: from n/a through <= 2.0.0.
- Affected versions
-
max 2.1.0.
- Status
-
vulnerable