Extension WordPress
Vulnérabilités Contact Form 7 Captcha
Cette page rassemble les failles publiées pour Contact Form 7 Captcha, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Contact Form 7 Captcha
2 fiches
Contact Form 7 Captcha <= 0.1.1 – Reflected Cross-Site Scripting
The Contact Form 7 Captcha WordPress plugin before 0.1.2 does not escape the $_SERVER['REQUEST_URI'] parameter before outputting it back in an attribute, which could lead to Reflected Cross-Site Scripting in old web browsers
*-0.1.1
0.1.2
27/06/2022
Contact Form 7 Captcha <= 0.0.8 – Cross-Site Request Forgery to Stored Cross-Site Scripting
The Contact Form 7 Captcha WordPress plugin before 0.0.9 does not have any CSRF check in place when saving its settings, allowing attacker to make a logged in user with the manage_options change them. Furthermore, the settings are…
[*, 0.0.9)
0.0.9
26/07/2021
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.