Access violation vulnerability in Contact Form by BestWebSoft – Advanced Contact Us Form Builder for WordPress 3.82

The Contact Form plugin WordPress is vulnerable to security issues in versions up to 3.82. It is possible for people with a subscriber account to bypass authorization checks and validation on the add and remove language AJAX functions. This means they could change the language of the vulnerable service and potentially inject malicious web scripts.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.