Home/Product/codedropz drag and drop multiple file upload contact form 7
Product

codedropz drag and drop multiple file upload contact form 7

12 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-3515
< 1.3.9.0
The Drag and Drop Multiple File Upload for Contact Form 7 plugin for WordPress is vulnerable to arbitrary file uploads due to insu
8.1HIGH
CVE-2025-2485
< 1.3.8.9
The Drag and Drop Multiple File Upload for Contact Form 7 plugin for WordPress is vulnerable to PHP Object Injection in all versio
7.5HIGH
CVE-2025-2328
< 1.3.8.8
The Drag and Drop Multiple File Upload for Contact Form 7 plugin for WordPress is vulnerable to arbitrary file deletion due to ins
8.8HIGH
CVE-2024-12267
< 1.3.8.6
The Drag and Drop Multiple File Upload - Contact Form 7 plugin for WordPress is vulnerable to limited arbitrary file deletion due
5.3MEDIUM
CVE-2024-3717
< 1.3.7.8
The Drag and Drop Multiple File Upload - Contact Form 7 plugin for WordPress is vulnerable to Sensitive Information Exposure in al
5.3MEDIUM
CVE-2023-5822
<= 1.3.7.3
The Drag and Drop Multiple File Upload - Contact Form 7 plugin for WordPress is vulnerable to arbitrary file uploads due to insuff
8.1HIGH
CVE-2022-45364
<= 1.3.6.5
Cross-Site Request Forgery (CSRF) vulnerability in Glen Don L. Mongaya Drag and Drop Multiple File Upload - Contact Form 7 plugin
5.4MEDIUM
CVE-2023-1282
< 5.0.6.4
The Drag and Drop Multiple File Upload PRO - Contact Form 7 Standard WordPress plugin before 2.11.1 and Drag and Drop Multiple Fil
6.1MEDIUM
CVE-2023-1112
< 5.0.6.3
A vulnerability was found in Drag and Drop Multiple File Upload Contact Form 7 5.0.6.1 on WordPress. It has been classified as cri
4.7MEDIUM
CVE-2022-3282
< 1.3.6.5
The Drag and Drop Multiple File Upload WordPress plugin before 1.3.6.5 does not properly check for the upload size limit set in fo
4.3MEDIUM
CVE-2022-0595
< 1.3.6.3
The Drag and Drop Multiple File Upload WordPress plugin before 1.3.6.3 allows SVG files to be uploaded by default via the dnd_code
5.4MEDIUM
CVE-2020-12800
< 1.3.3.3
The drag-and-drop-multiple-file-upload-contact-form-7 plugin before 1.3.3.3 for WordPress allows Unrestricted File Upload and remo
9.8CRITICAL
threatengine.sh