cformsii_project CVE Vulnerabilities & CVE List (9)

Products (CPE): — CVEs: 9

cformsii_project vulnerability overview

Aggregates CVE and security vulnerability intelligence across all cformsii_project-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Disclosed issues often relate to vendor risk cross-site scripting, vendor risk sql injection, and vendor risk csrf; exposure may include vendor impact session compromise in vendor surface production workloads contexts.

Vulnerability distribution trend (last 24 months)

Showing 19 of 9 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2023-52203 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Oliver Seidel, Bastian Germann cformsII allows Stored XSS.This issue affects cformsII: from n/a through 15.0.5. [email protected] 5.9 0.12% 2024-01-08 2026-04-28
CVE-2023-25449 Cross-Site Request Forgery (CSRF) vulnerability in Oliver Seidel, Bastian Germann cformsII plugin <= 15.0.4 versions. [email protected] 4.3 0.09% 2023-06-15 2024-11-21
CVE-2014-10393 The cforms2 plugin before 10.5 for WordPress has XSS. [email protected] 6.1 0.19% 2019-08-22 2024-11-21
CVE-2014-10392 The cforms2 plugin before 10.2 for WordPress has XSS. [email protected] 6.1 0.28% 2019-08-22 2024-11-21
CVE-2017-18570 The cforms2 plugin before 14.13 for WordPress has SQL injection in the tracking DB GUI via Delete Entries or Download Entries. [email protected] 9.8 0.55% 2019-08-22 2024-11-21
CVE-2015-9333 The cforms2 plugin before 14.6.10 for WordPress has SQL injection. [email protected] 9.8 0.60% 2019-08-22 2024-11-21
CVE-2017-18559 The cforms2 plugin before 14.13.3 for WordPress has multiple XSS issues. [email protected] 6.1 0.21% 2019-08-21 2024-11-21
CVE-2014-10377 The cforms2 plugin before 13.2 for WordPress has XSS in lib_ajax.php. [email protected] 6.1 0.19% 2019-08-21 2024-11-21
CVE-2019-15238 The cforms2 plugin before 15.0.2 for WordPress has CSRF related to the IP address field. [email protected] 8.8 0.30% 2019-08-20 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence