VYPR

Gsheetconnector Gravityforms

by WordPress

CVEs (2)

  • CVE-2025-8593HigOct 11, 2025
    risk 0.57cvss 8.8epss 0.00

    The GSheetConnector For Gravity Forms plugin for WordPress is vulnerable to authorization bypass in versions less than, or equal to, 1.3.27. This is due to a missing capability check on the 'install_plugin' function. This makes it possible for authenticated attackers, with…

  • CVE-2025-8606LowOct 11, 2025
    risk 0.09cvss 2.4epss 0.00

    The GSheetConnector For Gravity Forms plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions less than, or equal to, 1.3.23. This is due to missing or incorrect nonce validation on the activate_plugin and deactivate_plugin functions. This makes it possible…