📦 Ultimate Addons For Contact Form 7

by Themefic

🔍 What is Ultimate Addons For Contact Form 7?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-6212

HIGH CVSS 7.2 Jun 26, 2025

This vulnerability allows unauthenticated attackers to inject malicious scripts into WordPress sites using the Ultra Addons for Contact Form 7 plugin. When administrators view form submission data in ...

CVE-2025-6220

HIGH CVSS 7.2 Jun 18, 2025

The Ultra Addons for Contact Form 7 WordPress plugin has a vulnerability that allows authenticated administrators to upload arbitrary files due to missing file type validation. This can lead to remote...

CVE-2023-49766

HIGH CVSS 7.1 Dec 14, 2023

This vulnerability allows attackers to inject malicious scripts into web pages generated by the Ultimate Addons for Contact Form 7 WordPress plugin. When users view affected pages, the scripts execute...

CVE-2023-30493

HIGH CVSS 7.1 Sep 27, 2023

This vulnerability allows unauthenticated attackers to inject malicious scripts via the Ultimate Addons for Contact Form 7 WordPress plugin. When exploited, it can lead to session hijacking, credentia...

CVE-2022-47586

HIGH CVSS 8.2 Jun 19, 2023

This CVE describes an unauthenticated SQL injection vulnerability in the Ultimate Addons for Contact Form 7 WordPress plugin. Attackers can exploit this to execute arbitrary SQL commands on affected W...

CVE-2023-1615

HIGH CVSS 8.8 Jun 9, 2023

This SQL injection vulnerability in the Ultimate Addons for Contact Form 7 WordPress plugin allows authenticated attackers of any privilege level to inject malicious SQL queries via the 'id' parameter...

CVE-2025-6756

MEDIUM CVSS 6.4 Jul 1, 2025

This stored XSS vulnerability in the Ultra Addons for Contact Form 7 WordPress plugin allows authenticated attackers with contributor-level access or higher to inject malicious scripts into website pa...