First published: Mon Mar 04 2019(Updated: )
The "Forminator Contact Form, Poll & Quiz Builder" plugin before 1.6 for WordPress has XSS via a custom input field of a poll.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Forminator | <1.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2019-9567.
The title of this vulnerability is "The Forminator Contact Form Poll & Quiz Builder plugin before 1.6 for WordPress has XSS via a custom input field of a poll."
The severity level of CVE-2019-9567 is medium.
This vulnerability affects Forminator Contact Form plugin version 1.6 and earlier.
To fix the vulnerability in Forminator Contact Form plugin, update to the latest version available (1.7 or higher).