Input validation vulnerability in Database for Contact Form 7, WPforms, Elementor forms 1.3.2

The Contact Form Entries plugin for WordPress has a security issue where anyone with administrator privileges can upload any type of file to the website. This could potentially allow them to gain control of the website and execute code remotely.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.