High 7.6
2026-02-19< 2.21.11
CVE-2026-25418
Minimum safe version
2.21.11
Update to 2.21.11 or later to address 21 fixable vulnerabilities
CVE-2026-25418
CVE-2025-14901
Contact Form by Bit Form - Bit Form <= 2.20.3 - Unauthenticated Arbitrary File Upload
CVE-2024-13451
Contact Form by Bit Form <= 2.18.3 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload
CVE-2025-30885
CVE-2024-13450
CVE-2024-12190
CVE-2024-9507
CVE-2024-47319
CVE-2024-47335
CVE-2024-47301
CVE-2024-7780
CVE-2024-7775
CVE-2024-7702
CVE-2024-7782
CVE-2024-7777
CVE-2024-6123
CVE-2024-1640
CVE-2023-3645
CVE-2022-4774