WS Form LITE – Drag & Drop Contact Form Builder for WordPress

WS Form LITE is a contact form builder plugin for WordPress that allows users to create professional, mobile-friendly, and accessible contact forms. It offers unlimited forms and submissions, clean HTML 5 code, Cloudflare Turnstile Captcha, and a drag-and-drop layout editor, among other features. The plugin is also framework-friendly and GDPR compliant.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Access violation vulnerability in WS Form LITE – Drag & Drop Contact Form Builder for WordPress 1.10.35

    Fixed

    The WS Form LITE plugin for WordPress has a security flaw that allows anyone to access sensitive data without permission. This is because the 'get_config' function does not have a check to make sure ...

    Read More
  • Input validation vulnerability in WS Form LITE – Drag & Drop Contact Form Builder for WordPress 1.10.13

    Fixed

    A plugin for WordPress called WS Form LITE has a security issue that can be exploited by hackers. This issue, known as Stored Cross-Site Scripting, allows attackers to insert harmful code into web pa...

    Read More
  • Input validation vulnerability in WS Form LITE – Drag & Drop Contact Form Builder for WordPress 1.9.244

    Fixed

    A popular WordPress plugin called "WS Form LITE" has a security flaw that allows hackers to inject harmful code into a website. This can happen if a user clicks on a link that the hacker has created....

    Read More
  • Input validation vulnerability in WS Form LITE – Drag & Drop Contact Form Builder for WordPress 1.9.238

    Fixed

    A popular plugin for WordPress called "WS Form LITE - Drag & Drop Contact Form Builder" has a security issue that allows hackers to insert harmful code into web pages. This can happen when a user...

    Read More
  • Output validation vulnerability in WS Form LITE – Drag & Drop Contact Form Builder for WordPress 1.9.217

    Fixed

    The WS Form LITE plugin for WordPress has a security issue where attackers can insert harmful code into exported CSV files. This can happen in versions 1.9.217 and below, and it can lead to code exec...

    Read More
  • Input validation vulnerability in WS Form LITE – Drag & Drop Contact Form Builder for WordPress 1.9.171

    Fixed

    The WS Form LITE - Drag & Drop Contact Form Builder for WordPress plugin for WordPress is vulnerable to a type of attack called SQL Injection. This type of attack can happen when the plugin does ...

    Read More
  • Weak configuration vulnerability in WS Form LITE – Drag & Drop Contact Form Builder for WordPress 1.9.117

    Fixed

    The WS Form LITE plugin for WordPress is a tool that helps people make contact forms for their websites. Unfortunately, versions of the plugin up to and including 1.9.117 have a security flaw that al...

    Read More
  • Input validation vulnerability in WS Form LITE – Drag & Drop Contact Form Builder for WordPress 1.8.176

    Fixed

    in the admin area

    Read More
  • Input validation vulnerability in WS Form LITE – Drag & Drop Contact Form Builder for WordPress 1.8.176

    Fixed

    The WS Form LITE and Pro plugins for WordPress had a vulnerability before version 1.8.176 where someone with high privileges could use Cross-Site Scripting to perform malicious actions

    Read More