Medium severity4.7NVD Advisory· Published Mar 16, 2023· Updated Jun 17, 2026
CVE-2022-38971
CVE-2022-38971
Description
Stored Cross-Site Scripting (XSS) vulnerability in ThemeKraft Post Form – Registration Form – Profile Form for User Profiles and Content Forms for User Submissions plugin <= 2.7.5 versions.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Themekraft/Post Form Registration Form Profile Form For User Profiles And Content Formscpe-rescue2 versions
n/a+ 1 more
- (no CPE)range: n/a
- cpe:2.3:a:themekraft:post_form_registration_form_profile_form_for_user_profiles_and_content_forms:*:*:*:*:*:wordpress:*:*range: <=2.7.5
- Range: <=2.7.5
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.