CVE Tools

Bitpressadmin

8 CVEs tracked since 2024. Since Aug 2024, none of them reached CISA KEV.

Bitpressadmin CVEs per month

Aug 2024 to Feb 2025. Point at a month, or focus the strip and use the arrow keys.
Bitpressadmin CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2024-0850
2024-09null or fewer
2024-10null or fewer
2024-11null or fewer
2024-12null or fewer
2025-01null or fewer
2025-0230

Products

The products that kept showing up in Bitpressadmin's monthly top three, with their CVEs summed over those months.

  1. Contact Form By Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form Builder51 month
  2. Chat Widget: Floating Customer Support Button For 30+ Channels, Supporting Sms, Calls, and Chat – Bit Assist31 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Bitpressadmin.

  1. CVE-2026-16810Bit Form <= 3.2.0 - Authenticated (Administrator+) SQL Injection via 'filterText' Parameter6.5
  2. CVE-2026-15991File Manager 6.0 - 6.9 - Missing Authorization to Authenticated (Subscriber+) Arbitrary File Read and Deletion via 'cmd' Query Parameter8.8
  3. CVE-2026-15006Bit integrations <= 2.9.0 - Unauthenticated Arbitrary File Read via Optional CF7 File Field7.5
  4. CVE-2026-14372Bit Form <= 3.1.1 - Authenticated (Subscriber+) Arbitrary File Deletion via '_old' Parameter7.1
  5. CVE-2026-11989Bit integrations <= 2.8.7 - Unauthenticated Server-Side Request Forgery via Form Field Upload Mapping6.5
  6. CVE-2025-14901Bit Form – Contact Form Plugin <= 2.21.6 - Missing Authorization to Unauthenticated Workflow Replay6.5
  7. CVE-2025-6679Contact Form by Bit Form - Bit Form <= 2.20.3 - Unauthenticated Arbitrary File Upload9.8
  8. CVE-2024-13451Contact Form by Bit Form <= 2.17.5 - Unauthenticated Sensitive Information Exposure5.3
  9. CVE-2025-1725Bit File Manager – 100% Free & Open Source File Manager and Code Editor for WordPress <= 6.7 - Authenticated (Subscriber+) Stored Cross-Site Scripting via SVG File Uploads6.4
  10. CVE-2025-2580Contact Form by Bit Form <= 2.18.3 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload4.9
  11. CVE-2025-0822Bit Assist <= 1.5.2 - Path Traversal to Authenticated (Subscriber+) Arbitrary File Read via fileID Parameter6.5
  12. CVE-2025-0821Bit Assist <= 1.5.2 - Authenticated (Subscriber+) SQL Injection via id Parameter6.5
  13. CVE-2024-13791Bit Assist <= 1.5.2 - Path Traversal to Authenticated (Administrator+) Arbitrary File Read via downloadResponseFile Function4.9
  14. CVE-2024-13450Contact Form by Bit Form <= 2.17.4 - Authenticated (Administrator+) Server-Side Request Forgery3.8
  15. CVE-2024-12190Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder <= 2.17.3 - Missing Authorization to Authenticated (Subscriber+) Form Submission Disclosure4.3

The record

Peak rank
#124 in Aug 2024
Busiest month shown
Aug 2024, 5 CVEs
Months with a KEV entry
0 since Aug 2024
Monthly snapshots
2 since 2024
Bitpressadmin's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store