Skip to content

Known CVE

Redirection for Contact Form 7 < 2.5.0 - Cross-Site Scripting

The Redirection for Contact Form 7 WordPress plugin before 2.5.0 does not escape a link generated before outputting it in an attribute, leading to a Reflected Cross-Site Scripting.

CVE-2022-0250

Medium2022CVSS 6.1CWE-79

cve2022 · wordpress · wp · wp-plugin · wpcf7 · contact-form7 · xss · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website