CVE-2025-32269

Cross-Site Request Forgery (CSRF) vulnerability in CRM Perks WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms cf7-zendesk allows Cross Site Request Forgery.This issue affects WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms: from n/a through <= 1.1.3.
Configurations

No configuration.

History

23 Apr 2026, 15:28

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.3

01 Apr 2026, 17:22

Type Values Removed Values Added
Summary (en) Cross-Site Request Forgery (CSRF) vulnerability in CRM Perks WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms allows Cross Site Request Forgery. This issue affects WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms: from n/a through 1.1.3. (en) Cross-Site Request Forgery (CSRF) vulnerability in CRM Perks WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms cf7-zendesk allows Cross Site Request Forgery.This issue affects WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms: from n/a through <= 1.1.3.
CVSS v2 : unknown
v3 : 4.3
v2 : unknown
v3 : unknown
References
  • {'url': 'https://patchstack.com/database/wordpress/plugin/cf7-zendesk/vulnerability/wordpress-wp-zendesk-for-contact-form-7-wpforms-elementor-formidable-and-ninja-forms-plugin-1-1-3-cross-site-request-forgery-csrf-to-settings-change-vulnerability?_s_id=cve', 'source': 'audit@patchstack.com'}
  • () https://patchstack.com/database/Wordpress/Plugin/cf7-zendesk/vulnerability/wordpress-wp-zendesk-for-contact-form-7-wpforms-elementor-formidable-and-ninja-forms-plugin-1-1-3-cross-site-request-forgery-csrf-to-settings-change-vulnerability?_s_id=cve -

07 Apr 2025, 14:17

Type Values Removed Values Added
Summary
  • (es) La vulnerabilidad de Cross Site Request Forgery (CSRF) en CRM Perks WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms permite Cross Site Request Forgery. Este problema afecta a WP Zendesk para Contact Form 7, WPForms, Elementor, Formidable y Ninja Forms: desde n/d hasta la versión 1.1.3.

04 Apr 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-04 16:15

Updated : 2026-06-17 09:11


NVD link : CVE-2025-32269

Mitre link : CVE-2025-32269

CVE.ORG link : CVE-2025-32269


JSON object : View

Products Affected

No product.

CWE
CWE-352

Cross-Site Request Forgery (CSRF)