CVE-2023-33212

WordPress JetFormBuilder Plugin <= 3.0.6 is vulnerable to Cross Site Request Forgery (CSRF)

Cross-Site Request Forgery (CSRF) vulnerability in Crocoblock JetFormBuilder — Dynamic Blocks Form Builder plugin <= 3.0.6 versions.


We have discovered 1,740 live websites that are affected by CVE-2023-33212.

Run a Free Instant Scan




Affected Software

Product  Jetformbuilder
Category Wordpress Plugins
Vulnerable Domains1,740 live websites (31% of Jetformbuilder install base)
Vulnerable Versions
  • from 0 through 3.0.6
Vulnerable Versions Count13 versions ( 21% of all versions)


Common Weakness Enumeration

CWE-352 Cross-Site Request Forgery (CSRF)



Details

  • Published - May 28, 2023
  • Updated - Nov 8, 2024

Credits

  • Nguyen Xuan Chien (Patchstack Alliance) (finder)

Website Distribution by Country

Number of websites using CVE-2023-33212
United States350 websites



Germany188 websites
Brazil165 websites
Netherlands105 websites
France95 websites
Spain71 websites
GB67 websites
Belgium50 websites
Canada48 websites
Bulgaria40 websites

Website Distribution by TLD

Number of websites using CVE-2023-33212
.com578 websites
.com.br134 websites
.de116 websites
.org96 websites
.nl86 websites
.fr41 websites
.ch37 websites
.at36 websites
.co.uk34 websites
.be29 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2023-33212

Top websites that are affected by CVE-2023-33212. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*********.com United States**,***
*****.org United States**,***
****.********.edu United States**,***
*******.com Cyprus***,***
*******************.de Germany***,***
**************.org United States***,***
*************.com Canada***,***
***********************.fr France***,***
***.ca United States***,***
*******.eu France***,***
See full domain list

FAQ

CVE-2023-33212 is Cross-Site Request Forgery (CSRF) in Jetformbuilder
A total of 1,740 websites have been identified as vulnerable to CVE-2023-33212, based on global website indexing conducted by WebTechSurvey.
The Jetformbuilder is affected by the CVE-2023-33212 vulnerability.
Jetformbuilder versions up to and including 3.0.6 are vulnerable to CVE-2023-33212.