Access violation vulnerability in Gravity Forms: Multiple Form Instances 1.1.1

A plugin called Gravity Forms: Multiple Form Instances, used for WordPress websites, has a security vulnerability. This vulnerability is present in all versions up to 1.1.1. The problem is caused by the plugin having test files with display_errors turned on. This means that someone without authorization can find out the full path of the website, which can be used for other attacks. However, this information alone is not enough to cause harm to the website. Another vulnerability would also need to be present for any damage to occur.

Detected in:

Gravity Forms: Multiple Form Instances fixed vulnerable versions: >= * <= 1.1.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.