Vulnerabilities > Formviewswp

DATE CVE VULNERABILITY TITLE RISK
2024-02-05 CVE-2024-0370 Missing Authorization vulnerability in Formviewswp Views for Wpforms
The Views for WPForms – Display & Edit WPForms Entries on your site frontend plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'save_view' function in all versions up to, and including, 3.2.2.
network
low complexity
formviewswp CWE-862
4.3
2024-02-05 CVE-2024-0371 Missing Authorization vulnerability in Formviewswp Views for Wpforms
The Views for WPForms – Display & Edit WPForms Entries on your site frontend plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'create_view' function in all versions up to, and including, 3.2.2.
network
low complexity
formviewswp CWE-862
4.3
2024-02-05 CVE-2024-0372 Missing Authorization vulnerability in Formviewswp Views for Wpforms
The Views for WPForms – Display & Edit WPForms Entries on your site frontend plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'get_form_fields' function in all versions up to, and including, 3.2.2.
network
low complexity
formviewswp CWE-862
4.3
2024-02-05 CVE-2024-0373 Cross-Site Request Forgery (CSRF) vulnerability in Formviewswp Views for Wpforms
The Views for WPForms – Display & Edit WPForms Entries on your site frontend plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.2.2.
network
low complexity
formviewswp CWE-352
4.3
2024-02-05 CVE-2024-0374 Cross-Site Request Forgery (CSRF) vulnerability in Formviewswp Views for Wpforms
The Views for WPForms – Display & Edit WPForms Entries on your site frontend plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.2.2.
network
low complexity
formviewswp CWE-352
4.3