CVE-2025-14072
MEDIUM SEVERITYCVSS Score & Metrics
Base Score
5.3 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Vulnerability Description
The Ninja Forms WordPress plugin before 3.13.3 allows unauthenticated attackers to generate valid access tokens via the REST API which can then be used to read form submissions.
Vulnerability Details
Published Date
Last Modified
CWE ID
NVD-CWE-Other
Source
NVD
Vendor
ninjaforms
Product
ninja_forms
Discussion (0)
Add Comment
No comments yet. Be the first!