VYPR

Eform Wordpress Form Builder

by WordPress

CVEs (1)

  • CVE-2025-1294HigApr 24, 2025
    risk 0.47cvss 7.2epss 0.00

    The eForm - WordPress Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 4.18.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary…