Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-41546 | Cross-site scripting vulnerability exists in Forminator versions prior to 1.34.1. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who follows a crafted URL and accesses the webpage with the web form created by Forminator. |
Wed, 11 Sep 2024 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 10 Sep 2024 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Incsub
Incsub forminator |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:incsub:forminator:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Incsub
Incsub forminator |
|
| Metrics |
cvssV3_1
|
Mon, 09 Sep 2024 05:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cross-site scripting vulnerability exists in Forminator versions prior to 1.34.1. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who follows a crafted URL and accesses the webpage with the web form created by Forminator. | |
| References |
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-03-26T20:02:44.348Z
Reserved: 2024-09-03T01:43:24.807Z
Link: CVE-2024-45625
Updated: 2024-09-11T12:42:15.832Z
Status : Modified
Published: 2024-09-09T05:15:01.827
Modified: 2025-03-26T20:15:21.077
Link: CVE-2024-45625
No data.
OpenCVE Enrichment
No data.
EUVD