plugin

Safetymails Forms Vulnerabilities

1 known security issue reported for the Safetymails Forms WordPress plugin. Most recent disclosed Oct 18, 2024.

1 high

Running Safetymails Forms on your site? Check whether your installed version is affected.

Scan your site free

SafetyForms <= 1.0.0 - Cross-Site Request Forgery

high

The SafetyForms plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.0. This is due to missing or incorrect nonce validation on one of its functions. This makes it possible for unauthenticated attackers to inject malicious SQL code into a query via a forged request gran...

CVSS:
8.8
Affected:
up to 1.0.0
Fix:
No patched version reported
Disclosed:
Oct 18, 2024

CVE-2024-49615 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database