CVE-2026-85122

CVE-2026-85122 published: The Easy Form Builder by WhiteStudio WordPress plugin before 4.2.0 does not validate a submitted value against the stored configuration for some of its form types, allowing unauthenticated users to store arbitrary content which is then rendered unescaped i...

View full NVD advisory → ← Back to CVE watch