CVE-2026-15748: Critical Forminator WordPress Flaw Enables Unauthenticated RCE

A critical security vulnerability in the popular Forminator Forms plugin for WordPress can allow unauthenticated attackers to upload executable PHP files and potentially take complete control of vulnerable websites. Tracked as CVE-2026-15748, the arbitrary file upload flaw carries a CVSS score of 9.8 and affects Forminator versions up to and including 1.56.1. Forminator is a […]

The post CVE-2026-15748: Critical Forminator WordPress Flaw Enables Unauthenticated RCE appeared first on SOC Prime.

← Zurück zum soc Archiv (19.08.2026)