cleantalk
Vulnerabilities and Security Researches

Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress, CVE-2024-25572

CVE, Research URL

CVE-2024-25572

Published on
Apr 11, 2024
Research Description
Cross-site request forgery (CSRF) vulnerability exists in Ninja Forms prior to 3.4.31. If a website administrator views a malicious page while logging in, unintended operations may be performed.
Affected versions
Min -, max 3.8.1.
Status
vulnerable