Access violation vulnerability in Metform Elementor Contact Form Builder – Flexible and Design-Friendly Contact Form builder plugin for WordPress 3.3.1

The Metform Elementor Contact Form Builder for WordPress is a plugin that lets users create contact forms for their websites. Unfortunately, there is a security issue with versions up to and including 3.3.1 – attackers with a subscriber-level account or higher can access sensitive information about form submissions, including the last name of the person who submitted the form. This vulnerability needs to be fixed as soon as possible.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.