WordPress W3SCloud Contact Form 7 to Zoho CRM Plugin <= 3.0 is vulnerable to Cross Site Request Forgery (CSRF)
W3SCloud Contact Form 7 to Zoho CRM
Minimum safe version
2.3
Update to 2.3 or later to address 6 fixable vulnerabilities
Latest available3.2 ✓⚠ 2 vulnerabilities have no fix
High 7.1 Unfixed
2025-09-26≤ 3.2
Medium 6.3
2024-10-16< 2.3
Freemius SDK <= 2.4.2 - Missing Authorization Checks
N/A Unfixed
2023-07-18≤ 3.0
WordPress W3SCloud Contact Form 7 to Zoho CRM Plugin <= 2.3 is vulnerable to Cross Site Scripting (XSS)
N/A
2022-03-04< 2.1.0
Freemius SDK <= 2.4.2 - Missing Authorization Checks
N/A
2021-08-09< 2.1.0
WordPress W3SCloud Contact Form 7 to Zoho CRM plugin <= 1.1.0 - Reflected Cross-Site Scripting (XSS) vulnerability
N/A
2022-02-28< 2.3
WordPress W3SCloud Contact Form 7 to Zoho CRM plugin <= 2.2 - Sensitive Information Disclosure vulnerability
N/A
2022-02-28< 2.3
WordPress W3SCloud Contact Form 7 to Zoho CRM plugin <= 2.2 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability
Medium 6.1
2021-09-06< 2.1.0
CVE-2021-24435