Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Contact Form 7 HIGH 7.4
CVE-2025-14457

The Drag and Drop Multiple File Upload for Contact Form 7 plugin for WordPress is vulnerable to unauthorized modification of data due to a missing ow…

Fix: after 1.3.9.2
Fix from $1,950 2026-01-15
Drag And Drop Multiple File Upload Contact Form 7 CRITICAL 9.8
CVE-2025-3515EPSS 5%

The Drag and Drop Multiple File Upload for Contact Form 7 plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type …

Fix: 1.3.9.0+
Fix from $2,300 2025-06-17
Drag And Drop Multiple File Upload Contact Form 7 HIGH 8.8
CVE-2025-2328

The Drag and Drop Multiple File Upload for Contact Form 7 plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path…

Fix: 1.3.8.8+
Fix from $1,950 2025-03-28
Drag And Drop Multiple File Upload Contact Form 7 HIGH 8.8
CVE-2025-2485

The Drag and Drop Multiple File Upload for Contact Form 7 plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and inclu…

Fix: 1.3.8.9+
Fix from $1,950 2025-03-28
Drag And Drop Multiple File Upload Contact Form 7 CRITICAL 9.1
CVE-2024-12267

The Drag and Drop Multiple File Upload – Contact Form 7 plugin for WordPress is vulnerable to limited arbitrary file deletion due to insufficient fil…

Fix: 1.3.8.6+
Fix from $2,300 2025-01-31
Drag And Drop Multiple File Upload Contact Form 7 HIGH 7.5
CVE-2024-3717

The Drag and Drop Multiple File Upload – Contact Form 7 plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, a…

Fix: 1.3.7.8+
Fix from $1,950 2024-05-02
Drag And Drop Multiple File Upload For Woocommerce CRITICAL 9.8
CVE-2022-45377

Unrestricted Upload of File with Dangerous Type vulnerability in Glen Don L. Mongaya Drag and Drop Multiple File Upload for WooCommerce.This issue af…

Fix: 1.0.9+
Fix from $2,300 2023-12-21
Drag And Drop Multiple File Upload Contact Form 7 CRITICAL 9.8
CVE-2023-5822

The Drag and Drop Multiple File Upload - Contact Form 7 plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type va…

Fix: after 1.3.7.3
Fix from $2,300 2023-11-22
Drag And Drop Multiple File Uploader MEDIUM 5.4
CVE-2023-4821

The Drag and Drop Multiple File Upload for WooCommerce WordPress plugin before 1.1.1 does not filter all potentially dangerous file extensions. There…

Fix: 1.1.1+
Fix from $1,600 2023-10-16
Drag And Drop Multiple File Upload Contact Form 7 HIGH 8.8
CVE-2022-45364

Cross-Site Request Forgery (CSRF) vulnerability in Glen Don L. Mongaya Drag and Drop Multiple File Upload – Contact Form 7 plugin <= 1.3.6.5 versions.

Fix: after 1.3.6.5
Fix from $1,950 2023-05-24
Drag And Drop Multiple File Upload Contact Form 7 MEDIUM 6.1
CVE-2023-1282

The Drag and Drop Multiple File Upload PRO - Contact Form 7 Standard WordPress plugin before 2.11.1 and Drag and Drop Multiple File Upload PRO - Cont…

Fix: 2.11.1 / 5.0.6.4+
Fix from $1,600 2023-04-17
Drag And Drop Multiple File Upload Contact Form 7 CRITICAL 9.8
CVE-2023-1112

A vulnerability was found in Drag and Drop Multiple File Upload Contact Form 7 5.0.6.1 on WordPress. It has been classified as critical. Affected is …

Fix: 5.0.6.3+
Fix from $2,300 2023-03-01
Drag And Drop Multiple File Upload Contact Form 7 MEDIUM 5.4
CVE-2022-0595EPSS 14%

The Drag and Drop Multiple File Upload WordPress plugin before 1.3.6.3 allows SVG files to be uploaded by default via the dnd_codedropz_upload AJAX a…

Fix: 1.3.6.3+
Fix from $1,600 2022-03-28
Drag And Drop Multiple File Upload Contact Form 7 CRITICAL 9.8
CVE-2020-12800EPSS 79%

The drag-and-drop-multiple-file-upload-contact-form-7 plugin before 1.3.3.3 for WordPress allows Unrestricted File Upload and remote code execution b…

Fix: 1.3.3.3+
Fix from $2,300 2020-06-08