Vulnerabilidades em funnelforms
17 resultadosCVE-2024-6312MEDIUMFunnelforms Free <= 3.7.3.2 - Authenticated (Administrator+) Arbitrary File DeletionEPSS 1.1%CVE-2024-6311HIGHFunnelforms Free <= 3.7.3.2 - Authenticated (Administrator+) Arbitrary File UploadEPSS 0.9%CVE-2024-10587HIGHFunnelforms Free <= 3.7.5.1 - Authenticated (Contributor+) PHP Object InjectionEPSS 0.6%CVE-2023-5386MEDIUMFunnelforms Free <= 3.4 - Missing Authorization to Arbitrary Post DeletionEPSS 0.4%CVE-2023-5416MEDIUMFunnelforms Free <= 3.4 - Missing Authorization to Category DeletionEPSS 0.4%CVE-2023-5415MEDIUMFunnelforms Free <= 3.4 - Missing Authorization to New Category CreationEPSS 0.4%CVE-2023-5387MEDIUMFunnelforms Free <= 3.4 - Missing Authorization to Enable/Disable Dark ModeEPSS 0.4%CVE-2024-7447MEDIUMInteractive Contact Form and Multi Step Form Builder with Drag & Drop Editor – Funnelforms Free <= 3.7.3.2 - Missing Authorization to Unauthenticated Arbitrary Media UploadEPSS 0.4%CVE-2023-5419MEDIUMFunnelforms Free <= 3.4 - Missing Authorization to Test Email SendingEPSS 0.4%CVE-2023-5417MEDIUMFunnelforms Free <= 3.4 - Missing Authorization to Category UpdateEPSS 0.4%CVE-2023-5385MEDIUMFunnelforms Free <= 3.4 - Missing Authorization to Arbitrary Post DuplicationEPSS 0.4%CVE-2023-5411MEDIUMFunnelforms Free <= 3.4 - Missing Authorization to Post ModificationEPSS 0.4%CVE-2024-5857MEDIUMInteractive Contact Form and Multi Step Form Builder with Drag & Drop Editor – Funnelforms Free <= 3.7.3.2 - Missing Authorization to Unauthenticated Arbitrary Media DeletionEPSS 0.3%CVE-2023-5382MEDIUMFunnelforms Free <= 3.4 - Cross-Site Request Forgery to Arbitrary Post DeletionEPSS 0.3%CVE-2023-5383MEDIUMFunnelforms Free <= 3.4 - Cross-Site Request Forgery to Arbitrary Post DuplicationEPSS 0.2%CVE-2025-68582MEDIUMWordPress Funnelforms Free plugin <= 3.8 - Broken Access Control vulnerabilityEPSS 0.2%CVE-2025-62758MEDIUMWordPress Funnelforms Free plugin <= 3.8 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.1%