Extension WordPress
Vulnérabilités Icegram Collect – Easy Form, Lead Collection and Subscription plugin
Cette page rassemble les failles publiées pour Icegram Collect – Easy Form, Lead Collection and Subscription plugin, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Icegram Collect – Easy Form, Lead Collection and Subscription plugin
3 fiches
Icegram Collect – Easy Form, Lead Collection and Subscription plugin <= 1.3.18 – Missing Authorization
The Icegram Collect – Easy Form, Lead Collection and Subscription plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 1.3.18. This makes…
*-1.3.18
1.3.19
04/06/2025
Icegram Collect – Easy Form, Lead Collection and Subscription plugin <= 1.3.14 – Missing Authorization
The Icegram Collect – Easy Form, Lead Collection and Subscription plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the disconnect_campaignmonitor() function, along with a few others, in versions up to,…
*-1.3.14
1.3.15
12/08/2024
Icegram Collect <= 1.3.8 – Authenticated(Contributor+) Cross-Site Scripting via Shortcode
The Icegram Collect plugin for WordPress is vulnerable to Cross-Site Scripting via the 'rainmaker_form' shortcode in versions up to, and including, 1.3.8 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible…
*-1.3.8
1.3.9
06/02/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.