First published: Fri Dec 29 2023(Updated: )
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for HubSpot and Contact Form 7, WPForms, Elementor, Ninja Forms.This issue affects Integration for HubSpot and Contact Form 7, WPForms, Elementor, Ninja Forms: from n/a through 1.2.8.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Crmperks Database for Contact Form 7, WPForms, Elementor Forms | <1.2.9 |
Update to 1.2.9 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-31095 is rated as moderate due to its potential for URL redirection to untrusted sites.
To fix CVE-2023-31095, update the Integration for HubSpot and Contact Form 7, WPForms, and Elementor Forms to version 1.2.9 or later.
CVE-2023-31095 affects versions of Integration for HubSpot and Contact Form 7, WPForms, Elementor, and Ninja Forms from n/a through 1.2.8.
CVE-2023-31095 is classified as an Open Redirect vulnerability, which can lead to users being redirected to malicious sites.
Users of the affected plugins who rely on URL redirection may be impacted by CVE-2023-31095, making them susceptible to phishing attacks.