Access violation vulnerability in Interactive Contact Form and Multi Step Form Builder with Drag & Drop Editor – Funnelforms Free 3.4

The Funnelforms Free plugin for WordPress has a security flaw in versions 3.4 and lower. This flaw allows users with the minimum permission level of “subscriber” to add new categories to the plugin without the proper authorization. This is a serious issue, as it could allow unauthorized changes to the plugin’s data.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.