VYPR
Medium severity4.9NVD Advisory· Published Feb 28, 2022· Updated Jun 17, 2026

CVE-2021-24689

CVE-2021-24689

Description

The Contact Forms - Drag & Drop Contact Form Builder WordPress plugin through 1.0.5 allows high privilege users to download arbitrary files from the web server via a path traversal attack

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.