cformsII

The cformsII plugin, a highly customizable form builder for WordPress, has been forked to keep it up to date after the original author discontinued development. Users should update to the latest security baseline version (15.0.5) as older versions contain known vulnerabilities. Related plugins include Really Simple CAPTCHA for cformsII, Contact Form DB for storing and exporting submission data, Old Tracking DB for those who don't want to switch from the built-in tracking DB, ReCaptcha Integration for WordPress, and UpiCRM for lead management. Localization is available for contribution via the WordPress translation project.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in cformsII 15.0.5

    Fixed

    The CformsII plugin for WordPress has a security issue that allows hackers to insert harmful code into web pages. This can happen when a user visits a page that has been injected with the code by an ...

    Read More
  • Input validation vulnerability in cformsII 15.0.5

    Fixed

    The cformsII plugin for WordPress has a security issue that could allow hackers to inject harmful code into certain pages. This can only happen if the website has multiple sites or if the option to f...

    Read More
  • Input validation vulnerability in cformsII 15.0.2

    Fixed

    The cforms2 plugin

    Read More
  • Input validation vulnerability in cformsII 11.5

    Fixed

    There are security vulnerabilities in a WordPress plugin called cformsII (cforms 2) that can allow malicious people to put unwanted web scripts or HTML into a website. This affects the plugin's file c...

    Read More
  • Input validation vulnerability in cformsII 14.13.2

    Fixed

    The cformsII plugin for WordPress is not secure in versions up to 14.13.2. Attackers can take advantage of this vulnerability by inserting malicious code into the 'switchform'

    Read More
  • Input validation vulnerability in cformsII 15.0.4

    Fixed

    The cformsII plugin for WordPress

    Read More
  • Input validation vulnerability in cformsII 13.1

    Fixed

    The cforms II(2) plugin

    Read More
  • Input validation vulnerability in cformsII 14.6.10

    Fixed

    The cforms2 plugin

    Read More
  • Information leakage vulnerability in cformsII 14.10.1

    Fixed

    The CformsII plugin for WordPress is vulnerable to a security issue that allows unauthenticated attackers to bypass the Captcha Verification. This means that someone can access protected information ...

    Read More
  • Input validation vulnerability in cformsII 14.8

    Fixed

    Read More
  • Input validation vulnerability in cformsII 14.13

    Fixed

    The cformsII plugin for WordPress has a security flaw in versions 14.12.3 and earlier that can be exploited by someone with high-level privileges. If they take advantage of this flaw

    Read More