CVE-2019-9567: XSS
Published Mar 4, 2019
·Updated
The "Forminator Contact Form, Poll & Quiz Builder" plugin before 1.6 for WordPress has XSS via a custom input field of a poll.
Affected Software
1 affected component
Incsub Forminator Wordpress<1.6
Event History
Mar 4, 2019
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
via NVD·06:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-9567.
2
What is the title of this vulnerability?
The title of this vulnerability is "The Forminator Contact Form Poll & Quiz Builder plugin before 1.6 for WordPress has XSS via a custom input field of a poll."
3
What is the severity level of CVE-2019-9567?
The severity level of CVE-2019-9567 is medium.
4
How does this vulnerability affect Forminator Contact Form plugin?
This vulnerability affects Forminator Contact Form plugin version 1.6 and earlier.
5
How can I fix the vulnerability in Forminator Contact Form plugin?
To fix the vulnerability in Forminator Contact Form plugin, update to the latest version available (1.7 or higher).