CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects WordPress.
CVE
CVE-2022-3463
Severity
CRITICAL
CVSS
9.8
EPSS
1.23%
WordPress
Original NVD Description
The Contact Form Plugin WordPress plugin before 4.3.13 does not validate and escape fields when exporting form entries as CSV, leading to a CSV injection
Related CVEs
Other vulnerabilities affecting the same vendor(s)