Filtered by vendor Subtlewebinc Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-0591 1 Subtlewebinc 1 Formcraft3 2024-08-02 9.1 Critical
The FormCraft WordPress plugin before 3.8.28 does not validate the URL parameter in the formcraft3_get AJAX action, leading to SSRF issues exploitable by unauthenticated users