CVE-2026-15748 (matched: wordpress)

  • Tuesday, 18th August, 2026
  • 16:05pm

A security vulnerability has been found in the Forminator Forms plugin for WordPress, a tool used to add forms and file upload features to WordPress websites. The flaw impacts every version of the plugin up to and including version 1.56.1. This issue lets people who do not have an account or login access to your site upload dangerous files that can run code on your web server. If attackers exploit this flaw, they could take full control of your website, steal visitor information, change your site’s content, or use your site to harm other people who visit it.

Source: NVD (National Vulnerability Database) — https://nvd.nist.gov/vuln/detail/CVE-2026-15748

« Back