cleantalk
Vulnerabilities and Security Researches

Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress, CVE-2020-36173

CVE, Research URL

CVE-2020-36173

Published on
Jan 06, 2021
Research Description
The Ninja Forms plugin before 3.4.28 for WordPress lacks escaping for submissions-table fields.
Affected versions
Min -, max 3.4.28.
Status
vulnerable