Vulnerabilities
Vulnerable Software
The Gravity Forms WordPress plugin before 2.7.5 does not escape generated URLs before outputting them in attributes, leading to Reflected Cross-Site Scripting which could be used against high-privileged users such as admin.
CVSS Score
6.1
EPSS Score
0.001
Published
2023-07-17
The gravity-forms-sms-notifications plugin before 2.4.0 for WordPress has XSS.
CVSS Score
6.1
EPSS Score
0.002
Published
2019-08-13


Contact Us

Shodan ® - All rights reserved