First published: Mon May 06 2024(Updated: )
Missing Authorization vulnerability in Wpmet Metform Elementor Contact Form Builder.This issue affects Metform Elementor Contact Form Builder: from n/a through 3.8.3.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
MetForm Contact Form, Survey, Quiz, & Custom Form Builder for Elementor | <3.8.4 | |
MetForm Contact Form, Survey, Quiz, & Custom Form Builder for Elementor | <=3.8.3 | |
WordPress MetForm | <=3.8.3 |
Update to 3.8.4 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-33570 is considered critical due to its missing authorization vulnerability that could allow unauthorized access.
CVE-2024-33570 affects all versions of Wpmet Metform Elementor Contact Form Builder from its initial release to version 3.8.3.
To fix CVE-2024-33570, you should update Wpmet Metform Elementor Contact Form Builder to the latest version that addresses this vulnerability.
CVE-2024-33570 is classified as a missing authorization vulnerability.
CVE-2024-33570 could lead to unauthorized access, allowing attackers to manipulate form submissions and potentially access sensitive data.