CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.8. It affects WordPress.
CVE
CVE-2022-3604
Severity
HIGH
CVSS
7.8
EPSS
0.43%
WordPress
Original NVD Description
The Contact Form Entries WordPress plugin before 1.3.0 does not validate data when its output in a CSV file, which could lead to CSV injection.
Related CVEs
Other vulnerabilities affecting the same vendor(s)