Vulnerabilities > Supsystic > Contact Form

DATE CVE VULNERABILITY TITLE RISK
2023-10-12 CVE-2023-45068 Cross-Site Request Forgery (CSRF) vulnerability in Supsystic Contact Form
Cross-Site Request Forgery (CSRF) vulnerability in Supsystic Contact Form by Supsystic plugin <= 1.7.27 versions.
network
low complexity
supsystic CWE-352
8.8
2023-05-17 CVE-2023-2528 Cross-Site Request Forgery (CSRF) vulnerability in Supsystic Contact Form
The Contact Form by Supsystic plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.7.24.
network
low complexity
supsystic CWE-352
8.8
2021-05-05 CVE-2021-24276 Cross-site Scripting vulnerability in Supsystic Contact Form
The Contact Form by Supsystic WordPress plugin before 1.7.15 did not sanitise the tab parameter of its options page before outputting it in an attribute, leading to a reflected Cross-Site Scripting issue
network
supsystic CWE-79
4.3