Known Vulnerabilities for Cformsii by Cformsii Project
Listed below are 9 of the newest known vulnerabilities associated with "Cformsii" by "Cformsii Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-39436 json | Cross-Site Request Forgery (CSRF) vulnerability in bgermann CformsII allows Cross Site Request Forgery. This issue affects C... | Not Provided | 2026-05-25 | 2026-05-26 |
| CVE-2024-22149 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Oliver Seidel, Bastian ... | Not Provided | 2024-03-27 | 2026-04-28 |
| CVE-2023-52203 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Oliver Seidel, Bastian ... | Not Provided | 2024-01-08 | 2026-04-28 |
| CVE-2023-25449 json | Cross-Site Request Forgery (CSRF) vulnerability in Oliver Seidel, Bastian Germann cformsII plugin <= 15.0.4 versions. | 8.8 - HIGH | 2023-06-15 | 2023-06-22 |
| CVE-2019-15238 json | The cforms2 plugin before 15.0.2 for WordPress has CSRF related to the IP address field. | 8.8 - HIGH | 2019-08-20 | 2019-08-22 |
| CVE-2017-18570 json | The cforms2 plugin before 14.13 for WordPress has SQL injection in the tracking DB GUI via Delete Entries or Download Entries... | 9.8 - CRITICAL | 2019-08-22 | 2019-08-23 |
| CVE-2017-18559 json | The cforms2 plugin before 14.13.3 for WordPress has multiple XSS issues. | 6.1 - MEDIUM | 2019-08-21 | 2023-03-01 |
| CVE-2015-9333 json | The cforms2 plugin before 14.6.10 for WordPress has SQL injection. | 9.8 - CRITICAL | 2019-08-22 | 2023-02-24 |
| CVE-2014-10393 json | The cforms2 plugin before 10.5 for WordPress has XSS. | 6.1 - MEDIUM | 2019-08-22 | 2019-08-23 |
| CVE-2014-10392 json | The cforms2 plugin before 10.2 for WordPress has XSS. | 6.1 - MEDIUM | 2019-08-22 | 2019-08-23 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Cformsii Project | Cformsii | 9.4 | |||
| Application | Cformsii Project | Cformsii | 9.3 | |||
| Application | Cformsii Project | Cformsii | 9.2 | |||
| Application | Cformsii Project | Cformsii | 9.1 | |||
| Application | Cformsii Project | Cformsii | 9.0 | |||
| Application | Cformsii Project | Cformsii | 8.7 | |||
| Application | Cformsii Project | Cformsii | 8.6.2 | |||
| Application | Cformsii Project | Cformsii | 8.6.1 | |||
| Application | Cformsii Project | Cformsii | 8.6 | |||
| Application | Cformsii Project | Cformsii | 8.5.2 | |||
| Application | Cformsii Project | Cformsii | 8.5.1 | |||
| Application | Cformsii Project | Cformsii | 8.5 | |||
| Application | Cformsii Project | Cformsii | 8.4.2 | |||
| Application | Cformsii Project | Cformsii | 8.4.1 | |||
| Application | Cformsii Project | Cformsii | 8.4 | |||
| Application | Cformsii Project | Cformsii | 8.3 | |||
| Application | Cformsii Project | Cformsii | 8.2 | |||
| Application | Cformsii Project | Cformsii | 8.1 | |||
| Application | Cformsii Project | Cformsii | 8.0 | |||
| Application | Cformsii Project | Cformsii | 7.53 |