Arforms form builder
This hub aggregates every CVE we track for Arforms form builder, a product in the web cms plugins space. Use it to gauge the current risk picture and drill into individual advisories.
6
CVEs tracked
0
Critical
3
High
0
In CISA KEV
Severity distribution
HIGH3MEDIUM3
Monthly trend
0
0
0
1
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 6 most recently published vulnerabilities affecting Arforms form builder.
- CVE-2024-54223WordPress ARForms plugin <= 1.7.1 - HTML Injection vulnerability5.3
- CVE-2024-37920WordPress ARForms Form Builder plugin <= 1.6.7 - Reflected Cross Site Scripting (XSS) vulnerability7.1
- CVE-2024-31270WordPress ARForms Form Builder plugin <= 1.6.1 - Broken Access Control vulnerability7.6
- CVE-2024-31272WordPress ARForms Form Builder plugin <= 1.6.1 - Cross Site Request Forgery (CSRF) vulnerability6.3
- CVE-2023-6828ARForms <= 1.5.8 - Unauthenticated Stored Cross-Site Scripting via arf_http_referrer_url7.2
- CVE-2022-45838WordPress ARForms Form Builder Plugin <= 1.5.5 is vulnerable to Cross Site Scripting (XSS)6.1
Product normalization is registry-driven with AI assist and human review. How it works