← WordPress Vulnerabilities
WordPress security by component

Wp Forum

Wp Forum is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published Dec 18, 2009; the highest CVE/CNA score is 7.5.

Plugin slug: wp-forum

CVE-2009-3703: Wp Forum: SQL injection

Wp Forum is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.

PublishedDec 18, 2009
Safe version guidanceSee mitigation notes
Safe version
Dec 18, 2009 CVE-2009-3703
Wp Forum: SQL injection
Wp Forum is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE7.5
NVD7.5
Jan 23, 2008 CVE-2008-0388
WP-Forum 1.7.4: SQL injection
WP-Forum 1.7.4 is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE6.8
NVD6.8