cleantalk
Vulnerabilities and Security Researches

Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress, CVE-2020-12462

CVE, Research URL

CVE-2020-12462

Published on
Apr 29, 2020
Research Description
The ninja-forms plugin before 3.4.24.2 for WordPress allows CSRF with resultant XSS.
Affected versions
Min -, max 3.4.24.2.
Status
vulnerable