CVE-2026-19513 | Gravity Forms Plugin up to 3.0.2 on WordPress GFAsyncUpload::upload unrestricted upload

SecurityVulns

A vulnerability was found in Gravity Forms Plugin up to 3.0.2 on WordPress and classified as critical. The impacted element is the function GFAsyncUpload::upload. Such manipulation leads to unrestricted upload.

This vulnerability is documented as CVE-2026-19513. The attack can be executed remotely. There is not any exploit available.VulDB Recent EntriesRead More