Skip to main content

Vendor/product archive

web-dorado / wp_form_builder CVEs

Beta · best-effort

2 CVEs tagged to web-dorado / wp_form_builder0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2023-5048

Published Nov 22, 2023

The WDContactFormBuilder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Contact_Form_Builder' shortcode in versions up to, and including, 1.0.72 due to…

CVSS 6.4 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2019-11557

Published Apr 26, 2019

The WebDorado Contact Form Builder plugin before 1.0.69 for WordPress allows CSRF via the wp-admin/admin-ajax.php action parameter, with resultant local file inclusion via directo…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1