Known Vulnerabilities for Flo Forms by Flothemes
Listed below are 2 of the newest known vulnerabilities associated with "Flo Forms" by "Flothemes".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-45714 json | CubeCart is an ecommerce software solution. Prior to 6.7.0, an Authenticated Server-Side Template Injection (SSTI) vulnerabil... | Not Provided | 2026-05-13 | 2026-05-13 |
| CVE-2026-45191 json | Net::CIDR::Lite versions before 0.24 for Perl does not properly consider extraneous zero characters in CIDR mask values, whic... | Not Provided | 2026-05-10 | 2026-05-11 |
| CVE-2026-44306 json | Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.73.21 and 6.15.0, responses from the forgot... | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2026-42845 json | The form plugin for Grav adds the ability to create and use forms. Prior to 9.1.0 , there is an unauthenticated page-content ... | Not Provided | 2026-05-11 | 2026-05-12 |
| CVE-2026-42842 json | The form plugin for Grav adds the ability to create and use forms. Prior to 9.1.0, a Stored Cross-Site Scripting (XSS) vulner... | Not Provided | 2026-05-11 | 2026-05-11 |
| CVE-2026-42741 json | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Aman Ninja Forms Views ... | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2026-41195 json | mosparo is the modern solution to protect your online forms from spam. Prior to 1.4.13, the automatic rule package source URL... | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2026-39858 json | Traefik is an HTTP reverse proxy and load balancer. Prior to versions 2.11.43, 3.6.14, and 3.7.0-rc.2, there is a high severi... | Not Provided | 2026-04-30 | 2026-04-30 |
| CVE-2026-39657 json | Missing Authorization vulnerability in leadlovers leadlovers forms leadlovers-forms allows Exploiting Incorrectly Configured ... | Not Provided | 2026-04-08 | 2026-04-29 |
| CVE-2026-38566 json | HireFlow v1.2 does not implement CSRF token validation on any state-changing POST endpoint. All forms (password change at /pr... | Not Provided | 2026-05-11 | 2026-05-12 |