CVE-2023-35911: Creative-Solutions Contact Form Generator
Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Creative Solutions Contact Form Generator : Creative form builder for WordPress allows SQL Injection.This issue affects Contact Form Generator : Creative form builder for WordPress: from n/a through 2.6.0.
Affected products
- Creative-Solutions Contact Form Generator: up to and including 2.6.0
Published 2023-11-06. Last modified 2026-06-17.