cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2022-0830,https://securityvulnerability.io/vulnerability/CVE-2022-0830,FormBuilder <= 1.08 - Stored Cross-Site Scripting via CSRF,"The FormBuilder WordPress plugin through 1.08 does not have CSRF checks in place when creating/updating and deleting forms, and does not sanitise as well as escape its form field values. As a result, attackers could make logged in admin update and delete arbitrary forms via a CSRF attack, and put Cross-Site Scripting payloads in them.",Wordpress,Formbuilder,6.5,MEDIUM,0.0006099999882280827,false,,false,false,false,,false,false,2022-04-04T15:35:50.000Z,0 CVE-2016-10910,https://securityvulnerability.io/vulnerability/CVE-2016-10910,,The formbuilder plugin before 1.06 for WordPress has multiple XSS issues.,Wordpress,Formbuilder,6.1,MEDIUM,0.0006900000153109431,false,,false,false,false,,false,false,2019-08-21T17:47:52.000Z,0 CVE-2012-6715,https://securityvulnerability.io/vulnerability/CVE-2012-6715,,The formbuilder plugin before 0.9.1 for WordPress has XSS via a Referer header.,Wordpress,Formbuilder,6.1,MEDIUM,0.0006900000153109431,false,,false,false,false,,false,false,2019-08-21T17:46:49.000Z,0