High 8.1
2025-08-28< 4.0.2
CVE-2025-53572
Minimum safe version
4.0.2
Update to 4.0.2 or later to address 4 fixable vulnerabilities
CVE-2025-53572
WP Easy Contact <= 4.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via noaccess_msg Parameter
WordPress Best Contact Management Software Plugin <= 4.0.0 is vulnerable to Cross Site Scripting (XSS)
CVE-2022-2151