cleantalk
Vulnerabilities and Security Researches

Responsive Contact Form Builder & Lead Generation Plugin, CVE-2022-23180

CVE, Research URL

CVE-2022-23180

Published on
Jan 16, 2024
Research Description
The Contact Form & Lead Form Elementor Builder WordPress plugin before 1.7.4 doesn't have authorisation and nonce checks, which could allow any authenticated users, such as subscriber to update and change various settings
Affected versions
Min -, max 1.7.4.
Status
vulnerable