VendorsStrategy11formidable_formsany version
Vulnerabilities

Strategy11 Formidable Forms any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2022-45806
WordPress Formidable Forms plugin <= 5.5.4 - Broken Access Control vulnerability
Published 2024-12-13 · Modified
9.8EPSS 0.005
CVE-2023-2877
Formidable Forms < 6.3.1 - Subscriber+ Remote Code Execution
Published 2023-06-27 · Modified
8.8EPSS 0.225
CVE-2023-1405
Formidable Forms < 6.2 - Unauthenticated PHP Object Injection
Published 2024-01-16 · Modified
7.5EPSS 0.007
CVE-2024-11188
Formidable Forms – Contact Form Plugin, Survey, Quiz, Payment, Calculator Form & Custom Form Builder <= 6.16.1.2 - Reflected Cross-Site Scripting via Custom HTML Form Parameter
Published 2024-11-23 · Analyzed
6.1EPSS 0.004
CVE-2024-23522
WordPress Formidable Forms plugin <= 6.7 - Content Injection vulnerability
Published 2024-05-17 · Analyzed
6.1EPSS 0.003
CVE-2024-0660
Formidable Forms <= 6.7.2 - Cross-Site Request Forgery to Stored Cross-Site Scripting
Published 2024-02-05 · Modified
6.1EPSS 0.002
CVE-2024-6725
Formidable Forms <= 6.11.1 - Authenticated (Subscriber+) Stored Cross-Site Scripting
Published 2024-07-31 · Analyzed
5.4EPSS 0.004
CVE-2024-9768
Formidable Forms < 6.14.1 - Admin+ Stored XSS
Published 2024-11-21 · Analyzed
4.8EPSS 0.004