Medium severity4.3NVD Advisory· Published Feb 17, 2023· Updated Jun 17, 2026
CVE-2023-23899
CVE-2023-23899
Description
Cross-Site Request Forgery (CSRF) vulnerability in HasThemes Extensions For CF7 plugin <= 2.0.8 versions leads to arbitrary plugin activation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:hasthemes:extensions_for_cf7:*:*:*:*:*:wordpress:*:*Range: <2.0.9
- Range: <=2.0.8
- HasThemes/Extensions For CF7 (Contact form 7 Database, Conditional Fields and Redirection)v5Range: n/a
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.