cleantalk
Vulnerabilities and Security Researches

Contact Form by WPForms – Drag & Drop Form Builder for WordPress, CVE-2023-30500

CVE, Research URL

CVE-2023-30500

Published on
Jun 22, 2023
Research Description
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WPForms WPForms Lite (wpforms-lite), WPForms WPForms Pro (wpforms) plugins <= 1.8.1.2 versions.
Affected versions
Min -, max 1.4.8.
Status
vulnerable