CVE-2016-10869: XSS
Published Aug 13, 2019
·Updated
The contact-form-plugin plugin before 4.0.2 for WordPress has XSS.
Affected Software
1 affected component
Bestwebsoft Contact Form Wordpress<4.0.2
Event History
Aug 13, 2019
CVE Published
via MITRE·04:48 PM
Data Sourced
via MITRE·04:48 PM
Description
Frequently Asked Questions
1
What is the vulnerability?
The vulnerability is a cross-site scripting (XSS) vulnerability.
2
What is the severity of CVE-2016-10869?
The severity of CVE-2016-10869 is medium.
3
Which software versions are affected by CVE-2016-10869?
The contact-form-plugin plugin versions before 4.0.2 for WordPress are affected by this vulnerability.
4
How can I fix CVE-2016-10869?
To fix CVE-2016-10869, you should update the contact-form-plugin plugin to version 4.0.2 or higher.
5
Where can I find more information about CVE-2016-10869?
You can find more information about CVE-2016-10869 on the official WordPress plugin page: https://wordpress.org/plugins/contact-form-plugin/#developers.