Ninja Forms
Ninjaforma · 2 CVEs
CVE-2023-38393
HIGH
WordPress Ninja Forms plugin <= 3.6.25 - Subscriber+ Broken Access Control vulnerability
Jun 19, 2024
CVE-2018-19287
MEDIUM
XSS in the Ninja Forms plugin before 3.3.18 for WordPress allows Remote Attackers to execute JavaScript via the include…
Nov 15, 2018
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2023-38393 | WordPress Ninja Forms plugin <= 3.6.25 - Subscriber+ Broken Access Control vulnerability | HIGH | 0.54% | Jun 19, 2024 |
| CVE-2018-19287 | XSS in the Ninja Forms plugin before 3.3.18 for WordPress allows Remote Attackers to execute JavaScript via the includes/Admin/Menus/Submissions.php (aka submi… | MEDIUM | 8.86% | Nov 15, 2018 |
Showing 1 to 2 of 2 CVEs