Input validation vulnerability in Forminator – Contact Form, Payment Form & Custom Form Builder 1.24.6

The Forminator plugin for WordPress is vulnerable to having malicious files uploaded to the affected website’s server. This is because the plugin doesn’t properly check what type of file is being uploaded before it is accepted. This makes it possible for anyone, even those not logged in, to upload malicious files, which may allow them to execute code on the server. Versions of the plugin up to and including 1.24.6 are affected.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.