Medium 5.3
2025-04-16< 6.0.6
WordPress Contact Form 7 Plugin <= 6.0.5 is vulnerable to Other Vulnerability Type
Minimum safe version
6.0.6
Update to 6.0.6 or later to address 12 fixable vulnerabilities
WordPress Contact Form 7 Plugin <= 6.0.5 is vulnerable to Other Vulnerability Type
CVE-2024-4704
CVE-2024-2242
CVE-2023-6449
Contact Form 7 <= 3.5.2 - Arbitrary File Upload
Contact Form 7 <= 3.5.2 - File Upload Remote Code Execution
WordPress Contact Form 7 Plugin <= 3.5.2 - Remote Code Execution
WordPress Contact Form 7 plugin <= 5.0.3 - Privilege Escalation vulnerability
WordPress Contact Form 7 plugin <= 5.3.1 - Unrestricted File Upload vulnerability
CVE-2014-2265
CVE-2018-20979
CVE-2020-35489