CVE-2026-13439 | WhiteStudio Easy Form Builder Plugin up to 4.0.11 on WordPress Password Recovery efb_set_password sid password recovery

SecurityVulns

A vulnerability was found in WhiteStudio Easy Form Builder Plugin up to 4.0.11 on WordPress. It has been declared as critical. This affects the function efb_set_password of the file /v1/forms/recovery/efb_set_password of the component Password Recovery. Executing a manipulation of the argument sid can lead to weak password recovery.

This vulnerability is handled as CVE-2026-13439. The attack can be executed remotely. There is not any exploit available.VulDB Recent EntriesRead More