First published: Thu Aug 22 2019(Updated: )
The ninja-forms plugin before 3.2.15 for WordPress has parameter tampering.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ninja Forms | <3.2.15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-20980 is a vulnerability found in the ninja-forms plugin before version 3.2.15 for WordPress, which allows for parameter tampering.
If your WordPress site is using the ninja-forms plugin before version 3.2.15, it is vulnerable to parameter tampering.
CVE-2018-20980 has a severity rating of 7.5 (high).
You can check if your site is affected by CVE-2018-20980 by verifying the version of the ninja-forms plugin installed.
To fix CVE-2018-20980, you should update the ninja-forms plugin to version 3.2.15 or later.