Extension WordPress

Vulnérabilités Icegram Collect – Easy Form, Lead Collection and Subscription plugin

Cette page rassemble les failles publiées pour Icegram Collect – Easy Form, Lead Collection and Subscription plugin, leurs plages de versions affectées et les correctifs signalés dans la base locale.

3Vulnérabilités
0Critiques
3Avec correctif
6,4CVSS maximal

Historique de sécurité

CVE et vulnérabilités de Icegram Collect – Easy Form, Lead Collection and Subscription plugin

3 fiches

CVE-2025-47527 Moyenne · 4,3
Icegram Collect – Easy Form, Lead Collection and Subscription plugin

Icegram Collect – Easy Form, Lead Collection and Subscription plugin <= 1.3.18 – Missing Authorization

The Icegram Collect – Easy Form, Lead Collection and Subscription plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 1.3.18. This makes…

Versions affectées

*-1.3.18

Correctif

1.3.19

Publication

04/06/2025

CVE-2024-43273 Moyenne · 4,3
Icegram Collect – Easy Form, Lead Collection and Subscription plugin

Icegram Collect – Easy Form, Lead Collection and Subscription plugin <= 1.3.14 – Missing Authorization

The Icegram Collect – Easy Form, Lead Collection and Subscription plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the disconnect_campaignmonitor() function, along with a few others, in versions up to,…

Versions affectées

*-1.3.14

Correctif

1.3.15

Publication

12/08/2024

CVE-2023-25024 Moyenne · 6,4
Icegram Collect – Easy Form, Lead Collection and Subscription plugin

Icegram Collect <= 1.3.8 – Authenticated(Contributor+) Cross-Site Scripting via Shortcode

The Icegram Collect plugin for WordPress is vulnerable to Cross-Site Scripting via the 'rainmaker_form' shortcode in versions up to, and including, 1.3.8 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible…

Versions affectées

*-1.3.8

Correctif

1.3.9

Publication

06/02/2023

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités