Vulnerabilities > Cimatti > Wordpress Contact Forms > 1.9.4

DATE CVE VULNERABILITY TITLE RISK
2025-02-01 CVE-2024-12184 Missing Authorization vulnerability in Cimatti Wordpress Contact Forms
The WordPress Contact Forms by Cimatti plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the accua_forms_download_submitted_file() function in all versions up to, and including, 1.9.4.
network
low complexity
cimatti CWE-862
5.3