CVE-2022-45806Missing Authorization in Formidable Forms

Severity
9.8CRITICALNVD
CNA4.3
EPSS
0.3%
top 47.53%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 13

Description

Missing Authorization vulnerability in Strategy11 Form Builder Team Formidable Forms allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Formidable Forms: from n/a through 5.5.4.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-jxpm-23vm-58g5: Missing Authorization vulnerability in Strategy11 Form Builder Team Formidable Forms allows Exploiting Incorrectly Configured Access Control Security2024-12-13
CVEList
WordPress Formidable Forms plugin <= 5.5.4 - Broken Access Control vulnerability2024-12-13
CVE-2022-45806 — Missing Authorization | cvebase