WordPress Plugin Ninja Forms Contact Form-The Drag and Drop Form Builder for WordPress Cross-Site Request Forgery - CVE-2020-36174 - Vulnerability Database

WordPress Plugin Ninja Forms Contact Form-The Drag and Drop Form Builder for WordPress Cross-Site Request Forgery - CVE-2020-36174

High
Reference: CVE-2020-36174
Title: WordPress Plugin Ninja Forms Contact Form-The Drag and Drop Form Builder for WordPress Cross-Site Request Forgery
Overview:

WordPress Plugin Ninja Forms Contact Form-The Drag and Drop Form Builder for WordPress is prone to a cross-site request forgery vulnerability. Exploiting this issue may allow a remote attacker to perform certain administrative actions and gain unauthorized access to the affected application other attacks are also possible. WordPress Plugin Ninja Forms Contact Form-The Drag and Drop Form Builder for WordPress version 3.4.27 is vulnerable prior versions may also be affected.