The contact-form-plugin plugin before 4.0.6 for WordPress has multiple XSS issues.Referenceshttps://wordpress.org/plugins/contact-form-plugin/#developers