Known Vulnerabilities for products from Mondula
Listed below are 7 of the newest known vulnerabilities associated with the vendor "Mondula".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2024-50428 json | Missing Authorization vulnerability in mondula2016 Multi Step Form multi-step-form allows Exploiting Incorrectly Configured A... | Not Provided | 2024-10-29 | 2026-04-23 |
| CVE-2024-25905 json | Cross-Site Request Forgery (CSRF) vulnerability in Mondula GmbH Multi Step Form.This issue affects Multi Step Form: from n/a ... | Not Provided | 2024-02-21 | 2026-04-28 |
| CVE-2023-50832 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mondula GmbH Multi Step... | Not Provided | 2023-12-21 | 2026-04-28 |
| CVE-2023-47758 json | 8.8 - HIGH | 2023-11-22 | 2023-11-27 | |
| CVE-2022-4196 json | The Multi Step Form WordPress plugin before 1.7.8 does not sanitise and escape some of its form fields, which could allow hig... | 4.8 - MEDIUM | 2023-01-09 | 2023-11-07 |
| CVE-2018-14846 json | The Mondula Multi Step Form plugin before 1.2.8 for WordPress has multiple stored XSS via wp-admin/admin-ajax.php. | 5.4 - MEDIUM | 2018-12-20 | 2019-01-24 |
| CVE-2018-14430 json | The Mondula Multi Step Form plugin through 1.2.5 for WordPress allows XSS via the fw_data [id][1], fw_data [id][2], fw_data [... | 6.1 - MEDIUM | 2018-07-25 | 2018-09-20 |
Known software with vulnerabilities from Mondula
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Mondula | Multi Step Form | 1.0.0 |