cleantalk
Vulnerabilities and Security Researches

weForms – Easy Drag & Drop Contact Form Builder For WordPress, CVE-2020-22276

CVE, Research URL

CVE-2020-22276

Published on
Nov 04, 2020
Research Description
WeForms Wordpress Plugin 1.4.7 allows CSV injection via a form's entry.
Affected versions
max 1.6.4.
Status
vulnerable