Pricing
Case studies
Login
Start trial
Form Maker by 10Web
10Web
Developer
1.15.40
Latest version
40,000
Installations
No date
Last updated
WordPress Plugin
No VDP
See changelog
Claim ownership
Report vulnerability
Vulnerabilities
Security Contributors
Vulnerability history
0 present
32 patched
8 Mitigation rules
Unauthenticated Stored Cross-Site Scripting via Hidden Field vulnerability
<= 1.15.35
06/02/2026
Unauthenticated Stored Cross-Site Scripting via SVG file vulnerability
<= 1.15.35
06/02/2026
Admin+ Stored XSS vulnerability
< 1.15.31
31/12/2025
Admin+ Stored XSS via Theme Title vulnerability
< 1.15.33
27/05/2025
Cross Site Scripting (XSS) Vulnerability
<= 1.15.33
19/05/2025
Admin+ Stored XSS vulnerability
< 1.15.32
16/04/2025
Admin+ Stored XSS vulnerability
< 1.15.30
24/03/2025
Admin+ Stored XSS vulnerability
< 1.15.33
24/02/2025
Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via FancyBox JavaScript Library
<= 1.15.27
03/12/2024
Reflected Cross-Site Scripting via add_query_arg Parameter vulnerability
<= 1.15.30
11/11/2024
Authenticated (Administrator+) Stored Cross-Site Scripting vulnerability
<= 1.15.27
26/09/2024
Reflected Cross Site Scripting (XSS) vulnerability
<= 1.15.26
09/08/2024
Admin+ Stored XSS vulnerability
< 1.15.26
01/07/2024
Cross Site Scripting (XSS) vulnerability
<= 1.15.24
07/05/2024
Authenticated (Subscriber+) Stored Self-Based Cross-Site Scripting vulnerability
<= 1.15.24
29/04/2024
Cross Site Scripting (XSS) vulnerability
<= 1.15.23
15/04/2024
Sensitive Information Exposure vulnerability
<= 1.15.22
25/03/2024
Cross-Site Request Forgery to Limited Code Execution via Execute vulnerability
<= 1.15.21
29/01/2024
Captcha Bypass Vulnerability vulnerability
<= 1.15.20
23/11/2023
Cross Site Scripting (XSS) vulnerability
<= 1.15.18
03/10/2023
Reflected Cross Site Scripting (XSS) vulnerability
<= 1.15.18
03/10/2023
Unauthenticated Arbitrary File Upload Vulnerability
< 1.15.20
07/09/2023
Authenticated SQL Injection (SQLi) vulnerability
<= 1.15.5
03/10/2022
Stored Cross-Site Scripting (XSS) vulnerability
<= 1.14.11
09/05/2022
Authenticated Stored Cross-Site Scripting (XSS) vulnerability
<= 1.13.59
15/07/2021
Multiple Authenticated Stored Cross-Site Scripting (XSS) vulnerabilities
<= 1.13.56
19/05/2021
Authenticated Reflected Cross-Site Scripting (XSS) vulnerability
<= 1.13.56
19/05/2021
Authenticated Reflected Cross-Site Scripting (XSS) vulnerability
<= 1.13.39
12/07/2020
Authenticated SQL Injection (SQLi) vulnerability
<= 1.13.35
26/05/2020
Authenticated SQL Injection (SQLi) vulnerability
<= 1.13.2
25/05/2019
Cross-Site Request Forgery (CSRF) vulnerability
<= 1.13.4
10/04/2019
Unspecified Cross Site Scripting
<= 1.6.4
01/08/2014