Vulnerabilities > Basixonline > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-12-13 CVE-2021-24705 Unspecified vulnerability in Basixonline Nex-Forms
The NEX-Forms WordPress plugin before 8.4.3 does not have CSRF checks in place when editing a form, and does not escape some of its settings as well as form fields before outputting them in attributes.
network
low complexity
basixonline
4.8