Vulnerability index

Browse CVEs

23 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Formidable Forms CRITICAL 9.8
CVE-2022-45806

Missing Authorization vulnerability in Strategy11 Form Builder Team Formidable Forms allows Exploiting Incorrectly Configured Access Control Security…

Fix: 5.5.5+
Fix from $2,300 2024-12-13
Formidable Forms MEDIUM 6.1
CVE-2024-11188

The Formidable Forms – Contact Form Plugin, Survey, Quiz, Payment, Calculator Form & Custom Form Builder plugin for WordPress is vulnerable to POST-B…

Fix: 6.16.2+
Fix from $1,600 2024-11-23
Formidable Form Builder MEDIUM 5.3
CVE-2017-20194

The Formidable Form Builder plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and including, 2.05.03 via the frm_forms…

Fix: after 2.05.03
Fix from $1,600 2024-10-16
Formidable Form Builder MEDIUM 6.1
CVE-2017-20192

The Formidable Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple parameters submitted during form entries l…

Fix: 2.05.03+
Fix from $1,600 2024-10-16
Formidable Forms MEDIUM 5.4
CVE-2024-6725

The Formidable Forms – Contact Form Plugin, Survey, Quiz, Payment, Calculator Form & Custom Form Builder plugin for WordPress is vulnerable to Stored…

Fix: 6.11.2+
Fix from $1,600 2024-07-31
Awp Classifieds HIGH 8.8
CVE-2024-31350

Missing Authorization vulnerability in AWP Classifieds Team AWP Classifieds.This issue affects AWP Classifieds: from n/a through 4.3.1.

Fix: 4.3.2+
Fix from $1,950 2024-06-09
Formidable Forms MEDIUM 6.1
CVE-2024-23522

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Strategy11 Form Builder Team Formidable Forms allows C…

Fix: 6.7.1+
Fix from $1,600 2024-05-17
User Registration Forms MEDIUM 6.5
CVE-2024-1290

The User Registration WordPress plugin before 2.12 does not prevent users with at least the contributor role from rendering sensitive shortcodes, all…

Fix: 2.12+
Fix from $1,600 2024-03-11
Formidable Forms HIGH 7.5
CVE-2023-1405

The Formidable Forms WordPress plugin before 6.2 unserializes user input, which could allow anonymous users to perform PHP Object Injection when a su…

Fix: 6.2+
Fix from $1,950 2024-01-16
Formidable Form Builder MEDIUM 6.1
CVE-2023-6830

The Formidable Forms plugin for WordPress is vulnerable to HTML injection in versions up to, and including, 6.7. This vulnerability allows unauthenti…

Fix: after 6.7
Fix from $1,600 2024-01-09
Awp Classifieds HIGH 8.8
CVE-2023-41801

Cross-Site Request Forgery (CSRF) vulnerability in AWP Classifieds Team Ad Directory & Listings by AWP Classifieds plugin <= 4.3 versions.

Fix: 4.3.1+
Fix from $1,950 2023-10-06
Formidable Forms HIGH 8.8
CVE-2023-2877EPSS 22%

The Formidable Forms WordPress plugin before 6.3.1 does not adequately authorize the user or validate the plugin URL in its functionality for install…

Fix: 6.3.1+
Fix from $1,950 2023-06-27
Formidable Form Builder MEDIUM 6.5
CVE-2023-0816

The Formidable Forms WordPress plugin before 6.1 uses several potentially untrusted headers to determine the IP address of the client, leading to IP …

Fix: 6.1+
Fix from $1,600 2023-03-27
Formidable Form Builder HIGH 8.8
CVE-2023-24419

Cross-Site Request Forgery (CSRF) vulnerability in Strategy11 Form Builder Team Formidable Forms plugin <= 5.5.6 versions.

Fix: 5.5.7+
Fix from $1,950 2023-02-28
Awp Classifieds CRITICAL 9.8
CVE-2022-3254EPSS 5%

The WordPress Classifieds Plugin WordPress plugin before 4.3 does not properly sanitise and escape some parameters before using them in a SQL stateme…

Fix: 4.3+
Fix from $2,300 2022-10-31
Formidable Form Builder CRITICAL 9.6
CVE-2021-24884

The Formidable Form Builder WordPress plugin before 4.09.05 allows to inject certain HTML Tags like <audio>,<video>,<img>,<a> and<button>.This could …

Fix: 4.09.05+
Fix from $2,300 2021-10-25
Business Directory Plugin Easy Listing Directories HIGH 8.8
CVE-2021-24178

The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.1 suffered from Cross-Site Request Forgery issues…

Fix: 5.11.1+
Fix from $1,950 2021-05-06
Business Directory Plugin Easy Listing Directories HIGH 8.8
CVE-2021-24179

The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11 suffered from a Cross-Site Request Forgery issue,…

Fix: 5.11+
Fix from $1,950 2021-05-06
Business Directory Plugin Easy Listing Directories HIGH 7.2
CVE-2021-24248

The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.1 did not properly check for imported files, forb…

Fix: 5.11.1+
Fix from $1,950 2021-05-06
Business Directory Plugin Easy Listing Directories MEDIUM 6.5
CVE-2021-24249

The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.2 suffered from a Cross-Site Request Forgery issu…

Fix: 5.11.2+
Fix from $1,600 2021-05-06
Business Directory Plugin Easy Listing Directories MEDIUM 5.4
CVE-2021-24250

The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.2 suffered from lack of sanitisation in the label…

Fix: 5.11.2+
Fix from $1,600 2021-05-06
Formidable Form Builder CRITICAL 9.8
CVE-2019-15780

The formidable plugin before 4.02.01 for WordPress has unsafe deserialization.

Fix: 4.02.01+
Fix from $2,300 2019-08-29
Awp Classifieds HIGH 7.5
CVE-2014-10013

SQL injection vulnerability in the Another WordPress Classifieds Plugin plugin for WordPress allows remote attackers to execute arbitrary SQL command…

No fix yet
Fix from $1,950 2015-01-13