Skip to main content

Vendor/product archive

ari-soft / contact_form_7_connector CVEs

Beta · best-effort

2 CVEs tagged to ari-soft / contact_form_7_connector0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2024-24884

Published Feb 12, 2024

Cross-Site Request Forgery (CSRF) vulnerability in ARI Soft Contact Form 7 Connector.This issue affects Contact Form 7 Connector: from n/a through 1.2.2.

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-0239

Published Jan 16, 2024

The Contact Form 7 Connector WordPress plugin before 1.2.3 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Script…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1