CVE Database
/

CVE-2022-23180

Back to search

CVE-2022-23180

Published: Jan 16, 2024

Modified: Jun 16, 2025

PUBLISHED

Description

The Contact Form & Lead Form Elementor Builder WordPress plugin before 1.7.4 doesn't have authorisation and nonce checks, which could allow any authenticated users, such as subscriber to update and change various settings

VendorProductVersions

Unknown

Contact Form & Lead Form Elementor Builder

affected
0 - < 1.7.4

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now