Known Vulnerabilities for Gravity Forms by Gravity Forms
Listed below are 10 of the newest known vulnerabilities associated with "Gravity Forms" by "Gravity Forms".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-4406 json | The Gravity Forms plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the `form_ids` parameter in the `g... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-4394 json | The Gravity Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Credit Card field's 'Card Type' s... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-3492 json | The Gravity Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 2.9... | Not Provided | 2026-03-11 | 2026-04-08 |
| CVE-2026-1396 json | The Magic Conversation For Gravity Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'magic-con... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2025-62099 json | Missing Authorization vulnerability in approveme Signature Add-On for Gravity Forms gravity-signature-forms-add-on allows Exp... | Not Provided | 2025-12-31 | 2026-04-01 |
| CVE-2025-60080 json | Deserialization of Untrusted Data vulnerability in add-ons.org PDF for Gravity Forms + Drag And Drop Template Builder pdf-for... | Not Provided | 2025-12-18 | 2026-04-01 |
| CVE-2025-58006 json | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks WP Gravity Forms Keap/Infusionsoft gf-infusion... | Not Provided | 2025-09-22 | 2026-04-01 |
| CVE-2025-54682 json | Cross-Site Request Forgery (CSRF) vulnerability in CRM Perks Connector for Gravity Forms and Google Sheets wp-gravity-forms-s... | Not Provided | 2025-08-14 | 2026-04-01 |
| CVE-2025-54681 json | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Connector for Gravity Forms and Google Sheets ... | Not Provided | 2025-08-14 | 2026-04-01 |
| CVE-2025-53263 json | Cross-Site Request Forgery (CSRF) vulnerability in PluginsCafe Address Autocomplete via Google for Gravity Forms gf-google-ad... | Not Provided | 2025-06-27 | 2026-04-01 |