cleantalk
Vulnerabilities and Security Researches

WordPress Contact Form, Drag and Drop Form Builder Plugin – Live Forms, CVE-2025-39560

CVE, Research URL

CVE-2025-39560

Published on
Apr 16, 2025
Research Description
Contact Form, Drag and Drop Form Builder Plugin &#8211; Live Forms [liveforms] < 4.8.5 CVE-2025-39560 [en] Missing Authorization vulnerability in Shahjada Live Forms allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Live Forms: from n/a through 4.8.4.
Affected versions
Min -, max 4.8.5.
Status
vulnerable