cleantalk
Vulnerabilities and Security Researches

World first Lifetime free Form Builder for WordPress, CVE-2024-54302

CVE, Research URL

CVE-2024-54302

Published on
Dec 13, 2024
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vikas Ratudi VForm allows Reflected XSS.This issue affects VForm: from n/a through 3.0.0.
Affected versions
max 3.0.1.
Status
vulnerable