Known Vulnerabilities for Contact-form-submission by Contact-form-submission Project
Listed below are 1 of the newest known vulnerabilities associated with "Contact-form-submission" by "Contact-form-submission Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-15395 json | The Kali Forms — Contact Form & Drag-and-Drop Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-12094 json | The Advanced Contact Form 7 - Compact DB plugin for WordPress is vulnerable to unauthorized deletion of data due to a missing... | Not Provided | 2026-06-24 | 2026-06-24 |
| CVE-2026-8901 json | The Integration for Freshsales – Contact Form 7, WPForms, Elementor, Gravity Forms and More plugin for WordPress is vulnera... | Not Provided | 2026-06-06 | 2026-06-06 |
| CVE-2026-8172 json | The Simple Basic Contact Form WordPress plugin through 20250114 does not escape user-supplied input before reflecting it into... | Not Provided | 2026-06-23 | 2026-06-23 |
| CVE-2026-8096 json | The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable to authorization bypass ... | Not Provided | 2026-05-19 | 2026-05-19 |
| CVE-2026-2470 json | The Page Builder: Pagelayer – Drag and Drop website builder plugin for WordPress is vulnerable to Incorrect Authorization i... | Not Provided | 2026-06-13 | 2026-06-15 |
| CVE-2022-0248 json | The Contact Form Submissions WordPress plugin before 1.7.3 does not sanitise and escape additional fields in contact form req... | 6.1 - MEDIUM | 2022-03-14 | 2022-05-01 |