VendorsEasy Registration Formseasy_registration_formsall versions
Vulnerabilities

Easy Registration Forms Easy Registration Forms

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2020-22275
Easy Registration Forms (ER Forms) Wordpress Plugin 2.0.6 allows an attacker to submit an entry with malicious CSV commands. After that, when the system administrator generates CSV output from the forms information, there is no check on this inputs and the codes are executable.
Published 2020-11-04 · Modified
8.8EPSS 0.022
CVE-2021-39353
Easy Registration Forms <= 2.1.1 Cross-Site Request Forgery to Stored Cross-Site Scripting
Published 2021-11-19 · Modified
8.8EPSS 0.007
CVE-2023-5134
Easy Registration Forms <= 2.1.1 - Authenticated (Subscriber+) Information Disclosure via Shortcode
Published 2023-09-23 · Modified
4.3EPSS 0.005