Extension WordPress
Vulnérabilités Void Contact Form 7 Widget For Elementor Page Builder
Cette page rassemble les failles publiées pour Void Contact Form 7 Widget For Elementor Page Builder, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Void Contact Form 7 Widget For Elementor Page Builder
4 fiches
Void Contact Form 7 Widget For Elementor Page Builder <= 2.4.1 – Authenticated (Author+) Stored Cross-Site Scripting
The Void Contact Form 7 Widget For Elementor Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'cf7' parameter in versions up to, and including, 2.4.1 due to insufficient input sanitization and output escaping.…
*-2.4.1
2.4.2
16/08/2024
Void Contact Form 7 Widget For Elementor Page Builder <= 2.4 – Authenticated (Contributor+) Stored Cross-Site Scripting via cf7_redirect_page Attribute
The Void Contact Form 7 Widget For Elementor Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'cf7_redirect_page' attribute within the plugin's Void Contact From 7 widget in all versions up to, and including,…
*-2.4
2.4.1
01/07/2024
Void Contact Form 7 Widget For Elementor Page Builder <= 2.3 – Missing Authorization
The Void Contact Form 7 Widget For Elementor Page Builder plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several AJAX functions in the /helper/helper.php file in versions up to, and including,…
*-2.3
2.4
03/01/2024
Void Contact Form 7 Widget For Elementor Page Builder <= 2.1.1 – Cross-Site Request Forgery in void_cf7_opt_in_user_data_track
The Void Contact Form 7 Widget For Elementor Page Builder plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.1.1. This is due to missing or incorrect nonce validation on the void_cf7_opt_in_user_data_track…
*-2.1.1
2.2
12/02/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.