Extension WordPress
Vulnérabilités EleForms – All In One Form Integration including DB for Elementor
Cette page rassemble les failles publiées pour EleForms – All In One Form Integration including DB for Elementor, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de EleForms – All In One Form Integration including DB for Elementor
5 fiches
EleForms – All In One Form Integration including DB for Elementor <= 2.9.9.9 – Cross-Site Request Forgery
The EleForms – All In One Form Integration including DB for Elementor plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.9.9.9. This is due to missing or incorrect nonce validation…
*-2.9.9.9
Non indiqué
15/11/2024
EleForms – All In One Form Integration including DB for Elementor <= 2.9.9.9 – Missing Authorization
The EleForms – All In One Form Integration including DB for Elementor plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on several functions in all versions up to, and including,…
*-2.9.9.9
Non indiqué
05/11/2024
EleForms <= 2.9.9.9 – Missing Authorization
The EleForms plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 2.9.9.9. This makes it possible for unauthenticated attackers to perform an unauthorized action.
*-2.9.9.9
Non indiqué
11/07/2024
EleForms – All In One Form Integration including DB for Elementor <= 2.9.9.7 – Unauthenticated Stored Cross-Site Scripting
The EleForms – All In One Form Integration including DB for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several parameters in all versions up to, and including, 2.9.9.7 due to insufficient input sanitization and…
*-2.9.9.7
2.9.9.8
16/04/2024
EleForms – All In One Form Integration including DB for Elementor <= 2.9.9.7 – Missing Authorization to Sensitive Information Exposure
The EleForms – All In One Form Integration including DB for Elementor plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check when downloading form submissions in all versions up to, and…
*-2.9.9.7
2.9.9.8
16/04/2024
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.