9.8
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
Unrestricted Upload of File with Dangerous Type vulnerability in RedefiningTheWeb WordPress Contact Form 7 PDF, Google Sheet & Database rtwwcfp-wordpress-contact-form-7-pdf allows Using Malicious Files.This issue affects WordPress Contact Form 7 PDF, Google Sheet & Database: from n/a through <= 3.0.0.
AI Analysis
Arbitrary File Upload vulnerability in WordPress Contact Form 7 PDF, Google Sheet & Database plugin
Basic Information
ID
CVE-2025-64231
Source
Patchstack
Published
Dec 18, 2025 at 07:22
Modified
Dec 18, 2025 at 14:32
Affected Product
Vendor
RedefiningTheWeb
Product
WordPress Contact Form 7 PDF, Google Sheet & Database
Version
n/a
Affected Versions
RedefiningTheWeb WordPress Contact Form 7 PDF, Google Sheet & Database n/a
CWE Classification
AI Assessment
AI Score
9.8 / 10
AI Severity
Critical
Vendor
RedefiningTheWeb
Product
WordPress Contact Form 7 PDF, Google Sheet & Database
Version
<= 3.0.0