Show filters
663 Total Results
Displaying 201-210 of 663
Sort by:
Attacker Value
Unknown
CVE-2023-36505
Disclosure Date: April 17, 2024 (last updated February 26, 2025)
Improper Input Validation vulnerability in Saturday Drive Ninja Forms Contact Form.This issue affects Ninja Forms Contact Form : from n/a through 3.6.24.
0
Attacker Value
Unknown
CVE-2024-32509
Disclosure Date: April 17, 2024 (last updated February 26, 2025)
Missing Authorization vulnerability in Loopus WP Cost Estimation & Payment Forms Builder.This issue affects WP Cost Estimation & Payment Forms Builder: from n/a through 10.1.76.
0
Attacker Value
Unknown
CVE-2024-31378
Disclosure Date: April 15, 2024 (last updated February 26, 2025)
Cross-Site Request Forgery (CSRF) vulnerability in MailMunch MailChimp Forms by MailMunch.This issue affects MailChimp Forms by MailMunch: from n/a through 3.2.1.
0
Attacker Value
Unknown
CVE-2024-32134
Disclosure Date: April 15, 2024 (last updated February 26, 2025)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Nasirahmed Forms to Zapier, Integromat, IFTTT, Workato, Automate.Io, elastic.Io, Built.Io, APIANT, Webhook.This issue affects Forms to Zapier, Integromat, IFTTT, Workato, Automate.Io, elastic.Io, Built.Io, APIANT, Webhook: from n/a through 1.1.12.
0
Attacker Value
Unknown
CVE-2024-1307
Disclosure Date: April 15, 2024 (last updated April 15, 2024)
The Smart Forms WordPress plugin before 2.6.94 does not have proper authorization in some actions, which could allow users with a role as low as a subscriber to call them and perform unauthorized actions
0
Attacker Value
Unknown
CVE-2024-1306
Disclosure Date: April 15, 2024 (last updated April 15, 2024)
The Smart Forms WordPress plugin before 2.6.94 does not have CSRF checks in some places, which could allow attackers to make logged-in users perform unwanted actions via CSRF attacks, such as editing entries, and we consider it a medium risk.
0
Attacker Value
Unknown
CVE-2024-31272
Disclosure Date: April 12, 2024 (last updated February 26, 2025)
Cross-Site Request Forgery (CSRF) vulnerability in Repute InfoSystems ARForms Form Builder.This issue affects ARForms Form Builder: from n/a through 1.6.1.
0
Attacker Value
Unknown
CVE-2024-29220
Disclosure Date: April 11, 2024 (last updated February 26, 2025)
Ninja Forms prior to 3.8.1 contains a cross-site scripting vulnerability in custom fields for labels. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is accessing to the website using the product.
0
Attacker Value
Unknown
CVE-2024-26019
Disclosure Date: April 11, 2024 (last updated February 26, 2025)
Ninja Forms prior to 3.8.1 contains a cross-site scripting vulnerability in submit processing. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is accessing to the website using the product.
0
Attacker Value
Unknown
CVE-2024-25572
Disclosure Date: April 11, 2024 (last updated April 11, 2024)
Cross-site request forgery (CSRF) vulnerability exists in Ninja Forms prior to 3.4.31. If a website administrator views a malicious page while logging in, unintended operations may be performed.
0