Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Rob Carr

#24087of 53,625
9.8Total CVSS
Vulnerabilities · 1
PT-2016-4645
9.8
2016-05-14
WordPress · Ninja Forms · CVE-2016-1209
**Name of the Vulnerable Software and Affected Versions** Ninja Forms plugin versions prior to 2.9.42.1 **Description** The issue allows remote attackers to conduct PHP object injection attacks. This is achieved by sending crafted serialized values in a POST request. **Recommendations** For versions prior to 2.9.42.1, update to version 2.9.42.1 or later to resolve the issue.