bitapps
Web & CMS Pluginscommercial
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting bitapps.
- CVE-2024-13451Contact Form by Bit Form <= 2.17.5 - Unauthenticated Sensitive Information Exposure5.3
- CVE-2025-0822Bit Assist <= 1.5.2 - Path Traversal to Authenticated (Subscriber+) Arbitrary File Read via fileID Parameter6.5
- CVE-2025-0821Bit Assist <= 1.5.2 - Authenticated (Subscriber+) SQL Injection via id Parameter6.5
- CVE-2024-13791Bit Assist <= 1.5.2 - Path Traversal to Authenticated (Administrator+) Arbitrary File Read via downloadResponseFile Function4.9
- CVE-2024-13450Contact Form by Bit Form <= 2.17.4 - Authenticated (Administrator+) Server-Side Request Forgery3.8
- CVE-2024-7770Bit File Manager – 100% Free & Open Source File Manager and Code Editor for WordPress <= 6.5.5 - Authenticated (Subscriber+) Arbitrary File Upload8.8
- CVE-2024-7627Bit File Manager 6.0 - 6.5.5 - Unauthenticated Remote Code Execution via Race Condition8.1
- CVE-2024-43251WordPress Bit Form Pro plugin <= 2.6.4 - Authenticated Sensitive Data Exposure vulnerability6.5
- CVE-2024-7782Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder 2.0 - 2.13.4 - Authenticater (Administrator+) Arbitrary File Deletion8.7
- CVE-2024-7780Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder 2.0 - 2.13.9 - Authenticated (Administrator+) SQL Injection7.2
- CVE-2024-7777Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder 2.0 - 2.13.9 - Authenticated (Administrator+) Arbitrary File Read And Deletion9.0
- CVE-2024-7775Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder 2.0 - 2.13.9 - Authenticated (Administrator+) Arbitrary JavaScript File Uploads5.5
- CVE-2024-7702Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder 2.0 - 2.13.9 - Authenticated (Administrator+) SQL Injection via getLogHistory Function7.2
- CVE-2024-43250WordPress Bit Form Pro plugin <= 2.6.4 - Authenticated Plugin Settings Change vulnerability7.1
- CVE-2024-43249WordPress Bit Form Pro plugin <= 2.6.4 - Authenticated Arbitrary File Upload vulnerability9.9