Crmperks
15 CVEs tracked since 2023. Since Dec 2023, none of them reached CISA KEV.
Crmperks CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2023-12 | 5 | 0 |
| 2024-01 | null or fewer | |
| 2024-02 | null or fewer | |
| 2024-03 | 4 | 0 |
| 2024-04 | null or fewer | |
| 2024-05 | null or fewer | |
| 2024-06 | null or fewer | |
| 2024-07 | null or fewer | |
| 2024-08 | null or fewer | |
| 2024-09 | null or fewer | |
| 2024-10 | null or fewer | |
| 2024-11 | null or fewer | |
| 2024-12 | null or fewer | |
| 2025-01 | null or fewer | |
| 2025-02 | null or fewer | |
| 2025-03 | null or fewer | |
| 2025-04 | null or fewer | |
| 2025-05 | null or fewer | |
| 2025-06 | null or fewer | |
| 2025-07 | null or fewer | |
| 2025-08 | null or fewer | |
| 2025-09 | null or fewer | |
| 2025-10 | null or fewer | |
| 2025-11 | null or fewer | |
| 2025-12 | 6 | 0 |
Products
The products that kept showing up in Crmperks's monthly top three, with their CVEs summed over those months.
- Crm Perks Forms3
- Database For Contact Form 7, Wpforms, Elementor Forms1
- Database For Contact Form 7\, Wpforms\, Elementor Forms1
- Integration For Constant Contact and Contact Form 7\, Wpforms\, Elementor\, Ninja1
- Integration For Salesforce and Contact Form 7\, Wpforms\, Elementor\, Ninja Forms1
- Wp Gravity Forms Constant Contact Plugin1
- Wp Gravity Forms Freshdesk Plugin1
- Wp Gravity Forms Insightly1
Latest CVEs
The 15 most recently published vulnerabilities affecting Crmperks.
- CVE-2026-9145Database for Contact Form 7, WPforms, Elementor forms <= 1.5.1 - Unauthenticated Arbitrary File Copy/Upload via Elementor Pro Form Upload Field 'raw_value'6.5
- CVE-2026-9843Database for Contact Form 7, WPforms, Elementor forms <= 1.5.1 - Unauthenticated Arbitrary File Deletion via CF7 File Field POST Value8.1
- CVE-2026-3831Database for Contact Form 7, WPforms, Elementor forms <= 1.4.9 - Missing Authorization to Authenticated (Contributor+) Sensitive Information Exposure via Shortcode4.3
- CVE-2026-2599Database for Contact Form 7, WPforms, Elementor forms <= 1.4.7 - Unauthenticated PHP Object Injection via 'download_csv'9.8
- CVE-2026-2568WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms <= 1.1.5 - Unauthenticated Stored Cross-Site Scripting7.2
- CVE-2026-0825Database for Contact Form 7, WPforms, Elementor forms <= 1.4.5 - Missing Authorization to Unauthenticated Form Data Exfiltration via CSV Export5.3
- CVE-2025-60180WordPress WP Gravity Forms Salesforce plugin <= 1.5.1 - PHP Object Injection vulnerability9.8
- CVE-2025-60178WordPress WP Gravity Forms HubSpot plugin <= 1.2.6 - Deserialization of untrusted data vulnerability9.8
- CVE-2025-60089WordPress WP Gravity Forms FreshDesk plugin plugin <= 1.3.5 - Deserialization of untrusted data vulnerability9.8
- CVE-2025-60174WordPress WP Gravity Forms Constant Contact plugin plugin <= 1.1.2 - Deserialization of untrusted data vulnerability9.8
- CVE-2025-60091WordPress WP Gravity Forms Zoho CRM and Bigin plugin <= 1.2.9 - Deserialization of untrusted data vulnerability9.8
- CVE-2025-60090WordPress WP Gravity Forms Insightly plugin <= 1.1.6 - Deserialization of untrusted data vulnerability9.8
- CVE-2025-7384Database for Contact Form 7, WPforms, Elementor forms <= 1.4.3 - Unauthenticated PHP Object Injection to Arbitrary File Deletion9.8
- CVE-2025-7697Integration for Google Sheets and Contact Form 7, WPForms, Elementor, Ninja Forms <= 1.1.1 - Unauthenticated PHP Object Injection via verify_field_val Function9.8
- CVE-2025-7696Integration for Pipedrive and Contact Form 7, WPForms, Elementor, Ninja Forms <= 1.2.3 - Unauthenticated PHP Object Injection via verify_field_val Function9.8
The record
- Peak rank
- #141 in Dec 2023
- Busiest month shown
- Dec 2025, 6 CVEs
- Months with a KEV entry
- 0 since Dec 2023
- Monthly snapshots
- 3 since 2023