cleantalk
Vulnerabilities and Security Researches

Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress, CVE-2019-15025

CVE, Research URL

CVE-2019-15025

Published on
Aug 14, 2019
Research Description
The ninja-forms plugin before 3.3.21.2 for WordPress has SQL injection in the search filter on the submissions page.
Affected versions
Min -, max 3.3.21.2.
Status
vulnerable