Input validation vulnerability in WPCRM – CRM for Contact form CF7 & WooCommerce 3.2.0

The WPCRM plugin for WordPress, which is used for managing contact forms and WooCommerce, has a security vulnerability known as Reflected Cross-Site Scripting. This means that in versions up to 3.2.0, the plugin does not properly clean or protect user input and output, allowing attackers to insert harmful code into pages. This can happen if a user unknowingly clicks on a malicious link.

Detected in:

WPCRM - CRM for Contact form CF7 & WooCommerce open vulnerable versions: >= * <= 3.2.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.