CVE Database
/

CVE-2023-3134

Back to search

CVE-2023-3134

Published: Jul 31, 2023

Modified: Aug 2, 2024

PUBLISHED

Description

The Forminator WordPress plugin before 1.24.4 does not properly escape values that are being reflected inside form fields that use pre-populated query parameters, which could lead to reflected XSS attacks.

VendorProductVersions

Unknown

Forminator

affected
0 - < 1.24.4

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now