📦 Nex Forms

by Basixonline

🔍 What is Nex Forms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-50838

HIGH CVSS 7.6 Dec 28, 2023

This SQL injection vulnerability in the NEX-Forms WordPress plugin allows attackers to execute arbitrary SQL commands through the form builder. It affects all WordPress sites using NEX-Forms versions ...

CVE-2023-2114

HIGH CVSS 7.2 May 8, 2023

This SQL injection vulnerability in the NEX-Forms WordPress plugin allows attackers to manipulate database queries by injecting malicious SQL through the 'table' parameter. WordPress sites using vulne...

CVE-2021-34675

HIGH CVSS 7.5 Jul 19, 2021

CVE-2021-34675 is an authentication bypass vulnerability in Basix NEX-Forms WordPress plugin that allows unauthenticated attackers to access stored PDF reports without proper authentication. This affe...

CVE-2025-3468

MEDIUM CVSS 6.4 May 8, 2025

This vulnerability allows authenticated attackers with Custom-level access in WordPress to inject malicious scripts into web pages via the NEX-Forms plugin. The scripts execute when users visit compro...

CVE-2023-0272

MEDIUM CVSS 5.4 Mar 27, 2023

This vulnerability in the NEX-Forms WordPress plugin allows authenticated users with contributor role or higher to inject malicious scripts via shortcode attributes. The scripts are stored and execute...