Extension WordPress
Vulnérabilités Contact Form, Drag and Drop Form Builder Plugin – Live Forms
Cette page rassemble les failles publiées pour Contact Form, Drag and Drop Form Builder Plugin – Live Forms, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Contact Form, Drag and Drop Form Builder Plugin – Live Forms
5 fiches
Live Forms <= 4.8.4 – Missing Authorization
The Contact Form, Drag and Drop Form Builder Plugin – Live Forms plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 4.8.4. This…
*-4.8.4
4.8.5
16/04/2025
Contact Form, Drag and Drop Form Builder Plugin <= 4.8.5 – Missing Authorization
The Contact Form, Drag and Drop Form Builder Plugin – Live Forms plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 4.8.5. This…
*-4.8.5
Non indiqué
04/04/2025
Live Forms <= 4.8.4 – Missing Authorization to Authenticated (Subscriber+) Settings Update
The Contact Form, Drag and Drop Form Builder Plugin – Live Forms plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the saveSettings() function in all versions up to, and…
*-4.8.4
4.8.5
27/03/2025
WordPress Contact Form, Drag and Drop Form Builder Plugin – Live Forms <= 3.2.1 – Cross-Site Scripting
The liveforms plugin before 3.4.0 for WordPress has XSS via several parameters.
[*, 3.4.0)
3.4.0
21/08/2017
WordPress Contact Form, Drag and Drop Form Builder Plugin – Live Forms < 3.2.0 – SQL Injection
The WordPress Contact Form, Drag and Drop Form Builder Plugin – Live Forms plugin for WordPress is vulnerable to generic SQL Injection via the 'status', 'query_status' and 'form_id' parameters in versions up to, and including, 3.0.1 due to…
[*, 3.2.0)
3.2.0
11/03/2015
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.