cleantalk
Vulnerabilities and Security Researches

Responsive Contact Form Builder & Lead Generation Plugin, CVE-2024-1416

CVE, Research URL

CVE-2024-1416

Published on
May 02, 2024
Research Description
The Responsive Contact Form Builder & Lead Generation Plugin plugin for WordPress is vulnerable to unauthorized access to functionality due to a missing capability check on several functions in all versions up to, and including, 1.8.9. This makes it possible for unauthenticated attackers to invoke those functions.
Affected versions
max 1.9.0.
Status
vulnerable