Vulnerability Description
The Ninja Forms WordPress Ninja Forms Contact Form WordPress plugin before 3.6.26 was affected by a HTML Injection security vulnerability.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ninjaforms | Ninja Forms Contact Form | < 3.6.26 |
References
- https://wpscan.com/vulnerability/558e06ab-704b-4bb1-ba7f-b5f6bbbd68d9ExploitThird Party Advisory
- https://wpscan.com/vulnerability/558e06ab-704b-4bb1-ba7f-b5f6bbbd68d9ExploitThird Party Advisory
FAQ
What is CVE-2023-4109?
CVE-2023-4109 is a vulnerability with a CVSS score of 4.8 (MEDIUM). The Ninja Forms WordPress Ninja Forms Contact Form WordPress plugin before 3.6.26 was affected by a HTML Injection security vulnerability.
How severe is CVE-2023-4109?
CVE-2023-4109 has been rated MEDIUM with a CVSS base score of 4.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-4109?
Check the references section above for vendor advisories and patch information. Affected products include: Ninjaforms Ninja Forms Contact Form.