Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress, CVE-2024-25572
- CVE, Research URL
- Home page URL
-
Security reports for Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress
- Published on
- Apr 11, 2024
- Research Description
- Cross-site request forgery (CSRF) vulnerability exists in Ninja Forms prior to 3.4.31. If a website administrator views a malicious page while logging in, unintended operations may be performed.
- Affected versions
-
Min -, max 3.8.1.
- Status
-
vulnerable