Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress

Ninja Forms is a user-friendly WordPress plugin that allows users to easily create beautiful and complex forms without any coding skills. The plugin offers advanced features such as file uploads, PDF and Excel exports, and payment and donation forms. It also integrates with popular email marketing and CRM platforms. Ninja Forms is also GDPR compliant.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.8.0

    Fixed

    The Ninja Forms Contact Form is a tool that allows you to create forms on your WordPress website. However, this tool has a security vulnerability that can be exploited by attackers who have author-le...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.8.0

    Fixed

    The Ninja Forms Contact Form is a popular plugin for creating forms on WordPress websites. However, versions up to 3.8.0 have a security vulnerability that allows attackers to trick site administrato...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.7.1

    Fixed

    A popular plugin for creating contact forms in WordPress called Ninja Forms has a security vulnerability that allows hackers to inject malicious code into the email address field. This can happen whe...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.6.25

    Fixed

    The Ninja Forms plugin for WordPress is not secure in versions up to 3.6.25. Attackers who have access to an administrator account can add malicious HTML code to pages which will be executed every ti...

    Read More
  • Access violation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.6.25

    Fixed

    The Ninja Forms plugin for WordPress, used up to version 3.6.25, has a security flaw that allows people with a subscriber-level access or higher to access data without proper authorization. This mean...

    Read More
  • Access violation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.6.25

    Fixed

    The Ninja Forms plugin for WordPress has a security issue that affects versions up to, and including, 3.6.25. With this vulnerability, someone with contributor-level access or higher on a WordPress w...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.6.25

    Fixed

    The Ninja Forms plugin for WordPress is vulnerable to a security threat called Reflected Cross-Site Scripting. This issue affects versions of the plugin up to 3.6.25 and is caused by not properly pro...

    Read More
  • Denial of Service vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.6.25

    Fixed

    The Ninja Forms plugin for WordPress has a vulnerability that could cause a denial of service in versions up to 3.6.25. Attackers could craft form submissions with too much extra data, which could be...

    Read More
  • Access violation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.6.24

    Fixed

    The Ninja Forms plugin for WordPress is vulnerable to allowing the deletion of any file on the server when using versions up to 3.6.24. This means that anyone with administrative-level access can del...

    Read More
  • Access violation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.6.24

    Fixed

    The Ninja Forms plugin for WordPress is vulnerable to a security risk in versions up to 3.6.24. This vulnerability allows users with administrative-level access to delete files on the server. If an a...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.4.27

    Fixed

    The Ninja Forms plugin

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.0.31

    Fixed

    The Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress is a plugin for WordPress websites. Unfortunately, versions up to 3.0.31 of this plugin have a security flaw which is kno...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 2.9.21

    Fixed

    The Ninja Forms Contact Form plugin for WordPress is vulnerable to a security issue called Reflected Cross-Site Scripting. This issue affects versions up to and including 2.9.21. Attackers can use th...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.6.9

    Fixed

    The Ninja Forms Contact Form plugin for WordPress is not secure in versions up to 3.6.9. This makes it possible for people with certain permissions to add malicious code to pages. This code could caus...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 2.9.42

    Fixed

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 2.9.52

    Fixed

    The Ninja Forms Contact Form plugin for WordPress is vulnerable to a security issue called Reflected Cross-Site Scripting. This issue affects versions of the plugin before 2.9.52. It happens when cer...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.0

    Fixed

    The Ninja Forms Contact Form plugin for WordPress is vulnerable to code injection in versions up to and including 3.6.10. This is because it does not validate certain inputs, called Merge Tags, prope...

    Read More
  • Output validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.6.12

    Fixed

    The Ninja Forms Contact Form plugin for WordPress is not secure in versions up to 3.6.12. This means if someone with administrator-level access uses it

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 2.9.11

    Fixed

    The Ninja Forms plugin for WordPress is vulnerable to a type of cyber attack called Reflected Cross-Site Scripting. This vulnerability exists in all versions of the plugin up to and including 2.9.10....

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.4.24.2

    Fixed

    The Ninja Forms plugin

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.4.23

    Fixed

    The Ninja Forms plugin for WordPress is vulnerable to malicious code being inserted by someone who wants to cause harm. This malicious code can be inserted through various settings

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.6.21

    Fixed

    The Ninja Forms Contact Form plugin for WordPress has a security issue in versions up to 3.6.21. This issue makes it possible for someone to inject malicious code into web pages which can be activated...

    Read More
  • Access violation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.6.7

    Fixed

    The Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress plugin is vulnerable to a security issue in versions up to 3.6.7. This means that unauthenticated attackers can access se...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.4.27.1

    Fixed

    The Ninja Forms plugin for WordPress had a security issue before version 3.4.28. It was not properly protecting information entered into the submission forms

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 2.8.9

    Fixed

    The Ninja Forms plugin for WordPress

    Read More
  • Access violation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.5.7

    Fixed

    The Ninja Forms WordPress plugin has a security issue that can be exploited

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 2.8.6

    Fixed

    The Ninja Forms Contact Form plugin for WordPress is vulnerable to a type of cyber attack called Reflected Cross-Site Scripting. This attack makes it possible for someone to inject malicious web scrip...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.3.21.1

    Fixed

    Some versions of the Ninja Forms plugin for WordPress websites have a security issue that can allow someone to access your website's database. This issue can be found in the search filter on the submi...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.4.34

    Fixed

    The Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress WordPress plugin

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.3.8

    Fixed

    The ninja-forms plugin for WordPress before version 3.3.9 did not have enough protection when someone asked for their personal data to be exported. This meant that their data could be retrieved withou...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.3.14

    Fixed

    The Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress plugin for WordPress has a security vulnerability in versions up to, and including, 3.3.13. This vulnerability makes it p...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.0.31

    Fixed

    The Ninja Forms plugin for WordPress had a problem with the way it protected information before version 3.0.31. It wasn't doing a good enough job of preventing unwanted changes to the information it w...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 2.9.55.2

    Fixed

    The Ninja Forms Contact Form plugin for WordPress is vulnerable to a type of cyber attack called SQL Injection. This affects versions up to 2.9.55.1 of the plugin. The problem is that the plugin does...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.5.8.2

    Fixed

    The Ninja Forms Contact Form plugin for WordPress was vulnerable to Cross-Site Scripting attacks before version 3.5.8.2. This kind of attack could have been used by people with high levels of access

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 2.9.28

    Fixed

    The Ninja Forms Contact Form plugin for WordPress is not secure in versions up to 2.9.28. This means that attackers can inject malicious code into a website that runs this plugin, and when a victim v...

    Read More
  • Access violation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.4.34.1

    Fixed

    In the Ninja Forms Contact Form plugin for WordPress

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 2.9.18

    Fixed

    The Ninja Forms Contact Form plugin for WordPress is vulnerable to a security issue where it is possible for an unauthorized user to inject malicious web scripts into a website. This would cause the ...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.3.18

    Fixed

    The Ninja Forms plugin for WordPress

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.6.4

    Fixed

    The Ninja Forms Contact Form plugin for WordPress had a security vulnerability before the version 3.6.4. This vulnerability could have allowed people with a high level of access to the system to perfo...

    Read More
  • Access violation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.5.7

    Fixed

    The Ninja Forms WordPress plugin has a security issue where people can access private information from it. This problem affects versions up to and including 3.5.7. If someone is able to log in to the ...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.6.9

    Fixed

    The Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress plugin for WordPress is vulnerable to security risks. The plugin versions up to and including 3.6.9 have a missing nonce ...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.3.13

    Fixed

    The Ninja Forms plugin

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.2.14

    Fixed

    The Ninja Forms plugin

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 2.9.27

    Fixed

    The Ninja Forms Contact Form plugin for WordPress is vulnerable to a type of security exploit called CSV Injection up to version 2.9.27. This means that an attacker who is logged in and authorized to...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.6.9

    Fixed

    The Ninja Forms Contact Form plugin for WordPress is not secure in versions up to 3.6.9. It is possible for malicious users with administrator access to inject harmful code into webpages. This code ca...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.4.27

    Fixed

    The Ninja Forms plugin for WordPress had a security issue before version 3.4.27.1 that allowed people to get around the normal validation process when entering their email address.

    Read More
  • Access violation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.4.34

    Fixed

    Low-level users

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.6.10

    Fixed

    The Ninja Forms Contact Form plugin for WordPress is not secure in versions up to 3.6.10

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.3.19

    Fixed

    The Ninja Forms plugin

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.4.34

    Fixed

    In the Ninja Forms Contact Form WordPress plugin

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 2.9.42

    Fixed

    Ninja Forms is a plugin used in websites to help create forms. Versions 2.9.36 to 2.9.42 of this plugin have a security flaw that allows people who are not signed in to the website to upload files wi...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 2.8.10

    Fixed

    The Ninja Forms Contact Form is a tool used to create forms in WordPress websites. There is a security vulnerability in versions of Ninja Forms up to 2.8.8 which makes it possible for someone to injec...

    Read More
  • Input validation vulnerability in Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress 3.2.15

    Fixed

    The ninja-forms plugin for WordPress versions before 3.2.15 was vulnerable to a type of attack called parameter tampering.

    Read More