Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
contact form with captcha project contact form with captcha vulnerabilities and exploits
(subscribe to this query)
6.8
CVSSv2
CVE-2021-42358
The Contact Form With Captcha WordPress plugin is vulnerable to Cross-Site Request Forgery due to missing nonce validation in the ~/cfwc-form.php file during contact form submission, which made it possible for malicious users to inject arbitrary web scripts in versions up to, and...
Contact Form With Captcha Project Contact Form With Captcha
6.8
CVSSv2
CVE-2021-24565
The Contact Form 7 Captcha WordPress plugin prior to 0.0.9 does not have any CSRF check in place when saving its settings, allowing malicious user to make a logged in user with the manage_options change them. Furthermore, the settings are not escaped when output in attributes, le...
Contact Form 7 Captcha Project Contact Form 7 Captcha
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
CVE-2006-4304
CVE-2023-26603
CVE-2024-28327
CVE-2023-50363
CVE-2024-21905
template injection
CVE-2024-3400
cross-site request forgery
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started