CVE-2026-12400 | priyanshuchaudhary FlowForms Plugin up to 1.1.1 on WordPress Form Update update_form form_id resource injection

SecurityVulns

A vulnerability identified as critical has been detected in priyanshuchaudhary FlowForms Plugin up to 1.1.1 on WordPress. The affected element is the function update_form of the component Form Update Handler. This manipulation of the argument form_id causes improper control of resource identifiers.

The identification of this vulnerability is CVE-2026-12400. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More