Feed/CVE-2026-19222
CVE-2026-19222MEDIUMCVSS 6.6

CVE-2026-19222

Published Aug 22, 2026·Updated Aug 23, 2026

NVD Description

The Forminator Forms WordPress plugin before 1.57.0.7 does not consistently enforce the role restriction it applies to registration forms, allowing users who are permitted to build forms to configure one that assigns the administrator role to any visitor who registers through it.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free