CVE-2026-85097

CVE-2026-85097 published: The Bricksforge plugin for WordPress is vulnerable to unauthenticated arbitrary file upload in versions up to, and including, 3.1.8.9. This is due to insufficient validation of the attacker-controlled URL field in the 'temporaryFileUploads' parameter during...

View full NVD advisory → ← Back to CVE watch