Contact Form 7 Datepicker Project maintains a narrowly scoped WordPress plugin component that extends form-building functionality with date-input capabilities. The observed vulnerability signal reflects the plugin's role as a lightweight, user-facing form extension; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Contact Form 7 Datepicker Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-11516MEDIUM Stored XSS in the Contact Form 7 Datepicker plugin through 2.6.0 for WordPress allows authenticated attackers with minimal permissions to save arbitrary JavaScript to the plugin's | Apr 7, 2020 | 5.4 | 20 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Contact Form 7 Datepicker Project.
Media articles that mention a CVE ID that affects a product developed by Contact Form 7 Datepicker Project — matched by CVE ID, not by vendor name.