CVE-2026-19861 | JetFormBuilder Plugin 3.6.0 on WordPress cross site scripting

SecurityVulns

A vulnerability was found in JetFormBuilder Plugin 3.6.0 on WordPress. It has been declared as problematic. The impacted element is an unknown function. Such manipulation leads to cross site scripting.

This vulnerability is referenced as CVE-2026-19861. It is possible to launch the attack remotely. No exploit is available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More