Vulnerabilities (CVE)

Filtered by vendor Forms Project Subscribe
Filtered by product Forms
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-23388 1 Forms Project 1 Forms 2024-02-28 5.0 MEDIUM 5.3 MEDIUM
The package forms before 1.2.1, from 1.3.0 and before 1.3.2 are vulnerable to Regular Expression Denial of Service (ReDoS) via email validation.
CVE-2017-16015 1 Forms Project 1 Forms 2024-02-28 4.3 MEDIUM 6.1 MEDIUM
Forms is a library for easily creating HTML forms. Versions before 1.3.0 did not have proper html escaping. This means that if the application did not sanitize html on behalf of forms, use of forms may be vulnerable to cross site scripting