Input validation vulnerability in Ninja Forms – The Contact Form Builder That Grows With You 3.11.0

A plugin called Ninja Forms, used to build contact forms on websites powered by WordPress, has a security vulnerability where untrusted information can be used to inject harmful code. This can only happen if the site has another plugin or theme that also has a vulnerability. If this is the case, the attacker can potentially delete files, access private information, or even run their own code.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.