WP Libre Form Project develops a WordPress form-building plugin focused on user data collection and submission handling. Its vulnerability profile centers on the plugin's direct exposure of form data and user input, with recurring issues involving resource exposure across trust boundaries and unintended disclosure of sensitive information to unauthorized actors. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wp Libre Form Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-34867MEDIUM Unauthenticated Sensitive Information Disclosure vulnerability in WP Libre Form 2 plugin <= 2.0.8 at WordPress allows attackers to list and delete submissions. Affects only version | Sep 6, 2022 | 6.5 | 23 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wp Libre Form Project.
Media articles that mention a CVE ID that affects a product developed by Wp Libre Form Project — matched by CVE ID, not by vendor name.