Extension WordPress

Vulnérabilités Lead Form Data Collection to CRM

Cette page rassemble les failles publiées pour Lead Form Data Collection to CRM, leurs plages de versions affectées et les correctifs signalés dans la base locale.

3Vulnérabilités
0Critiques
3Avec correctif
8,8CVSS maximal

Historique de sécurité

CVE et vulnérabilités de Lead Form Data Collection to CRM

3 fiches

CVE-2025-5692 Moyenne · 6,3
Lead Form Data Collection to CRM

Lead Form Data Collection to CRM <= 3.1 – Missing Authorization to Authenticated (Subscriber+) Many Actions

The Lead Form Data Collection to CRM plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several functions in the ~/includes/LB_admin_ajax.php file in all versions up to, and including, 3.1. This makes…

Versions affectées

*-3.1

Correctif

3.2

Publication

01/07/2025

CVE-2025-47690 Élevée · 8,8
Lead Form Data Collection to CRM

Lead Form Data Collection to CRM <= 3.1 – Missing Authorization to Authenticated (Subscriber+) Arbitrary Options Update

The Lead Form Data Collection to CRM plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the save_thirdparty_form_title() function in all versions up to,…

Versions affectées

*-3.1

Correctif

3.2

Publication

09/05/2025

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités