The WordPress form builder plugin for contact forms, surveys and quizzes – Tripetto plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 8.0.8 via the 'attachments.php' file. This makes it possible for unauthenticated attackers to extract sensitive data including files uploaded via forms.
Metrics
Affected Vendors & Products
References
History
Wed, 05 Feb 2025 05:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | The WordPress form builder plugin for contact forms, surveys and quizzes – Tripetto plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 8.0.8 via the 'attachments.php' file. This makes it possible for unauthenticated attackers to extract sensitive data including files uploaded via forms. | |
Title | WordPress form builder plugin for contact forms, surveys and quizzes – Tripetto <= 8.0.8 - Unauthenticated Sensitive Information Exposure | |
Weaknesses | CWE-200 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2025-02-05T15:21:53.122Z
Reserved: 2025-02-04T16:22:53.749Z
Link: CVE-2024-13829

No data.

Status : Received
Published: 2025-02-05T06:15:31.257
Modified: 2025-02-05T06:15:31.257
Link: CVE-2024-13829

No data.