CVE-2020-8594: XSS
The Ninja Forms plugin 3.4.22 for WordPress has Multiple Stored XSS vulnerabilities via ninjaforms[recaptchasitekey], ninjaforms[recaptchasecretkey], ninjaforms[recaptchalang], or ninjaforms[dateformat].
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-8594?
CVE-2020-8594 refers to Multiple Stored XSS vulnerabilities in the Ninja Forms plugin 3.4.22 for WordPress.
What is the severity of CVE-2020-8594?
The severity of CVE-2020-8594 is medium with a CVSS score of 5.4.
How does CVE-2020-8594 affect Ninja Forms plugin?
The Ninja Forms plugin 3.4.22 for WordPress is affected by CVE-2020-8594, which introduces Multiple Stored XSS vulnerabilities.
How do I fix the CVE-2020-8594 vulnerability?
To fix the CVE-2020-8594 vulnerability, update the Ninja Forms plugin to the latest version available.
Where can I find more information about CVE-2020-8594?
You can find more information about CVE-2020-8594 in the references provided: [https://spider-security.co.uk/blog-cve-cve-2020-8594](https://spider-security.co.uk/blog-cve-cve-2020-8594), [https://wordpress.org/plugins/ninja-forms/#developers](https://wordpress.org/plugins/ninja-forms/#developers), [https://wpvulndb.com/vulnerabilities/10070](https://wpvulndb.com/vulnerabilities/10070).