Input validation vulnerability in Ninja Forms – The Contact Form Builder That Grows With You 3.8.10

A WordPress plugin called Ninja Forms – The Contact Form Builder That Grows With You has a security issue called Reflected Cross-Site Scripting. This is because the URL used in versions 3.8.6 to 3.8.10 does not have proper protection, allowing hackers to insert harmful web scripts onto pages. They can do this by tricking a user into clicking on a link.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.