CVE-2026-14325 | Drag and Drop Multiple File Upload for Contact Form 7 Plugin cross site scripting

SecurityVulns

A vulnerability described as problematic has been identified in Drag and Drop Multiple File Upload for Contact Form 7 Plugin 1.3.9.6 on WordPress. Affected by this vulnerability is an unknown functionality. Executing a manipulation can lead to cross site scripting.

This vulnerability is tracked as CVE-2026-14325. The attack can be launched remotely. No exploit exists.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More