High severity7.5NVD Advisory· Published Jun 20, 2022· Updated Jun 17, 2026
CVE-2022-1801
CVE-2022-1801
Description
The Very Simple Contact Form WordPress plugin before 11.6 exposes the solution to the captcha in the rendered contact form, both as hidden input fields and as plain text in the page, making it very easy for bots to bypass the captcha check, rendering the page a likely target for spam bots.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:very_simple_contact_form_project:very_simple_contact_form:*:*:*:*:*:wordpress:*:*Range: <11.6
(expand)+ 1 more
- (no CPE)
- (no CPE)range: <11.6
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/a5c97809-2ffc-4efb-8c80-1b734361cd06nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.