cleantalk
Vulnerabilities and Security Researches

Quill Forms | The Best Typeform Alternative | Create Conversational Multi Step Form, Survey, Quiz, Cost Estimation or Donation , 02d057a552f114004c3599076a235cd5fa23cd8e

Published on
Oct 24, 2023
Research Description
Quill Forms | The Best Typeform Alternative | Create Conversational Multi Step Form, Survey, Quiz, Cost Estimation or Donation Form on WordPress [quillforms] < 3.4.0 WordPress Quill Forms Plugin <= 3.3.0 is vulnerable to Broken Access Control No patched version is available. Abdi Pranata discovered and reported this Broken Access Control vulnerability in WordPress Quill Forms Plugin. A broken access control issue refers to a missing authorization, authentication or nonce token check in a function that could lead to an unprivileged user to executing a certain higher privileged action. This vulnerability has not been known to be fixed yet.
Affected versions
max 3.4.0.
Status
vulnerable