Pricing
Case studies
Login
Start trial
Kali Forms
WP Chill
Developer
2.4.10
Latest version
10,000
Installations
No date
Last updated
WordPress Plugin
Active VDP
Report vulnerability
Vulnerabilities
Security Policy
Security Contributors
Vulnerability history
0 present
11 patched
4 Mitigation rules
Unauthenticated Remote Code Execution via form_process vulnerability
<= 2.4.9
23/03/2026
Insecure Direct Object Reference to Authenticated (Contributor+) Sensitive Form Data Exposure vulnerability
<= 2.4.8
18/02/2026
Contributor+ Stored XSS vulnerability
< 2.4.3
16/05/2025
Missing Authorization to Arbitrary Plugin Deactivation vulnerability
<= 2.3.41
21/02/2024
Missing Authorization vulnerability
<= 2.3.41
21/02/2024
Insecure Direct Object References (IDOR) vulnerability
<= 2.3.36
17/01/2024
Broken Access Control vulnerability
<= 2.3.27
16/10/2023
Broken Access Control vulnerability
<= 2.3.28
06/10/2023
Unauthenticated Arbitrary Post Deletion vulnerability
<= 2.1.1
21/08/2020
Authenticated Plugin Settings Change vulnerability
<= 2.1.1
21/08/2020
Multiple Cross-Site Request Forgery (CSRF) vulnerabilities
<= 2.1.1
21/08/2020