Pricing
Case studies
Login
Start trial
ARForms Form Builder
N/A
Developer
N/A
Latest version
N/A
Installations
N/A
Last updated
WordPress Plugin
No VDP
Claim ownership
Report vulnerability
Vulnerabilities
Security Contributors
Vulnerability history
1 present
9 patched
5 Mitigation rules
Unauthenticated Blind Arbitrary Shortcode Execution vulnerability
<= 1.7.2
24/03/2026
Unauthenticated Stored Cross-Site Scripting via arf_http_referrer_url vulnerability
<= 1.5.8
18/02/2026
Unauthenticated Stored XSS vulnerability
< 1.7.1
17/05/2025
HTML Injection vulnerability
<= 1.7.1
05/12/2024
Reflected Cross Site Scripting (XSS) vulnerability
<= 1.6.7
09/07/2024
Missing Authorization to Authenticated(Subscriber+) Arbitrary Option Deletion vulnerability
<= 1.6.4
26/04/2024
Cross Site Request Forgery (CSRF) vulnerability
<= 1.6.1
05/04/2024
Broken Access Control vulnerability
<= 1.6.1
05/04/2024
Unauth. Stored Cross-Site Scripting (XSS) vulnerability
<= 1.5.6
23/11/2022
Stored Cross-Site Scripting (XSS) vulnerability
<= 1.4
02/11/2021