CVE-2025-7697

Published
View on NVD ↗
CVSS v3
9.8
CRITICAL
CVSS v2
N/A
Affected
1
PROJECT

Description

The Integration for Google Sheets and Contact Form 7, WPForms, Elementor, Ninja Forms plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.1.1 via deserialization of untrusted input within the verify_field_val() function. This makes it possible for unauthenticated attackers to inject a PHP Object. The additional presence of a POP chain in the Contact Form 7 plugin, which is likely to be used alongside, allows attackers to delete arbitrary files, leading to a denial of service or remote code execution when the wp-config.php file is deleted.

<p>Contact Form 7 Google Sheets Plugin sends form submissions from <a href="https://wordpress.org/plugins/contact-form-7/" rel="ugc">Contact Form 7</a>, <a href="https://wordpress.org/plugins/wpforms-lite/" rel="ugc">WPforms</a>, <a href="https://wordpress.org/plugins/elementor/" rel="ugc">Elementor Forms</a>, <a href="https://wordpress.org/plugins/ninja-forms/" rel="ugc">Ninja Forms</a>, <a href="https://wordpress.org/plugins/formidable/" rel="ugc">Formidable Forms</a>, <a href="https://wordpress.org/plugins/contact-form-entries/" rel="ugc">Contact Form Entries</a> and many other popular contact form plugins to Google Sheets when someone submits a form. Learn more about Contact Form Google Sheets Plugin at <a href="https://www.crmperks.com/plugins/contact-form-plugins/contact-form-google-sheets-integration/?utm_source=wordpress&amp;utm_medium=directory&amp;utm_campaign=Google_Sheets_readme" rel="nofollow ugc">crmperks.com</a>.</p> <h3>How to Setup</h3> <ul> <li>Go to &#8220;Google Sheets Accounts&#8221; tab then add new account.</li> <li>Go to &#8220;Google Sheets Feeds&#8221; tab then create new feed.</li> <li>Map required Google Sheets fields to contact form 7 fields.</li> <li>Send your test entry to Google Sheets.</li> <li>Go to &#8220;Google Sheets Logs&#8221; tab and verify, if entry was sent to Google Sheets.</li> </ul> <p><strong>Connecting Google Sheets account</strong></p> <p>Connect any Contact Form 7 form to Google Sheets by safe and secure Oauth 2.0. Additionally, you can connect multiple Google Sheets to Contact Form 7.</p> <p><strong>Map Google Sheets fields</strong></p> <p>Select any Google Sheet then Map Contact Form 7 form fields to Google Sheet fields.</p> <p><strong>Filter Contact Form 7 Google Sheets entries</strong></p> <p>Either send all entries to Google Sheets or send specific entries based on user input. For example , only send those form entries to Google Sheets which contanin work email address.</p> <p><strong>Manually sending entries to Google Sheets</strong></p> <p>You can automatically Send Contact Form 7 submissions to Google Sheets when a user submits a form. Also, you can manually send Contact Form 7 submissions to Google Sheets.</p> <p><strong>Contact Form 7 Google Sheets logs</strong></p> <p>View a detailed log of each Contact Form 7 submission Whether sent or not sent to Google Sheets , You can easily resend any entry to Google Sheets.</p> <blockquote><p><strong>Premium Version Features.</strong></p> <p>This plugin has a Premium version which comes with several additional benifits <a href="https://www.crmperks.com/plugins/contact-form-plugins/contact-form-google-sheets-integration/?utm_source=wordpress&amp;utm_medium=directory&amp;utm_campaign=Google Sheets_readme" rel="nofollow ugc">Contact Form Google Sheets Integration</a>.</p> <ul> <li>Map Contact Form 7 Phone Number fields to Google Sheets.</li> <li>Send Contact Form 7 attachments to Google Sheets.</li> <li>Create Un-Limited Google Sheets feeds.</li> <li>When any user submits a contact form, track gclid, utm parameters and geolocation.</li> <li>Verify lead&#8217;s phone number and get detailed information using phone lookup apis.</li> <li>20+ premium addons</li> </ul> </blockquote> <h3>Want to send data to other crm</h3> <p>We have Premium Extensions for 20+ CRMs.<a href="https://www.crmperks.com/plugin-category/contact-form-plugins/?utm_source=wordpress&amp;utm_medium=directory&amp;utm_campaign=Google_Sheets_readme" rel="nofollow ugc">View All CRM Extensions</a></p> <h3>Need Google Sheets Plugin for Gravity Forms ?</h3> <p>We have Google Sheets add-on for Gravity Forms. <a href="https://wordpress.org/plugins/wp-gravity-forms-spreadsheets/" rel="ugc">Gravity Forms Google Sheets Connector</a></p>
WordPress Plugin DirectoryWordPress Plugin Directory
15.6K