CVE-2021-25079 | Contact Form Entries Plugin up to 1.2.3 on WordPress Admin Page form_id/status/end_date/order/orderby/search cross site scripting (ID 2629442)
A vulnerability has been found in Contact Form Entries Plugin up to 1.2.3 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Admin Page. The manipulation of the argument form_id/status/end_date/order/orderby/search leads to cross site scripting.
This vulnerability is known as CVE-2021-25079. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.