Black Friday Deals 40% OFF

Days
Hours
Minutes

Flo Forms – Easy Drag & Drop Form Builder

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in Flo Forms – Easy Drag & Drop Form Builder 1.0.43

    Open

    The Flo Forms plugin for WordPress has a security vulnerability where malicious code can be uploaded through SVG files. This can happen because the plugin allows these file uploads without properly c...

    Read More
  • Access violation vulnerability in Flo Forms – Easy Drag & Drop Form Builder 1.0.43

    Open

    The Flo Forms - Easy Drag & Drop Form Builder plugin for WordPress has a security issue that could allow unauthorized access. This is because it does not properly check for certain permissions on...

    Read More
  • Access violation vulnerability in Flo Forms – Easy Drag & Drop Form Builder 1.0.42

    Fixed

    The Flo Forms plugin for WordPress, which helps users create forms by dragging and dropping elements, has a security flaw. This flaw allows attackers to access the plugin without proper authorization...

    Read More
  • Access violation vulnerability in Flo Forms – Easy Drag & Drop Form Builder 1.0.41

    Fixed

    The Flo Forms plugin for WordPress is not secure in versions up to, and including, 1.0.41. If someone with a subscriber-level account (or higher) is able to access the website, they can send a test e...

    Read More
  • Input validation vulnerability in Flo Forms – Easy Drag & Drop Form Builder 1.0.40

    Fixed

    The Flo Forms plugin for WordPress is vulnerable to an attack called Stored Cross-Site Scripting. This means that if someone with administrator-level access to the website uses the plugin in versions...

    Read More
  • Input validation vulnerability in Flo Forms – Easy Drag & Drop Form Builder 1.0.35

    Fixed

    The Flo Forms - Easy Drag & Drop Form Builder plugin for WordPress is vulnerable to a type of attack called Stored Cross-Site Scripting. This attack can be performed by using the flo_import_forms...

    Read More