Skip to content

Known CVE

WordPress Contact Form 7 Captcha <0.1.2 - Cross-Site Scripting

WordPress Contact Form 7 Captcha plugin before 0.1.2 contains a reflected cross-site scripting vulnerability. It does not escape the $_SERVER['REQUEST_URI'] parameter before outputting it back in an attribute.

CVE-2022-2187

Medium2022CVSS 6.1CWE-79

cve2022 · wpscan · wordpress · xss · wp-plugin · wp · contact_form_7_captcha_project · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website