Vulnerabilities > Krishaweb

DATE CVE VULNERABILITY TITLE RISK
2024-11-21 CVE-2024-10898 Unspecified vulnerability in Krishaweb Contact Form 7 Email ADD on
The Contact Form 7 Email Add on plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.9 via the cf7_email_add_on_add_admin_template() function.
network
low complexity
krishaweb
8.8
2023-04-23 CVE-2022-45080 Unspecified vulnerability in Krishaweb ADD multiple Marker 1.1/1.2
Cross-Site Request Forgery (CSRF) vulnerability in KrishaWeb Add Multiple Marker plugin <= 1.2 versions.
network
low complexity
krishaweb
8.8