CVE-2026-15602 | Webaways NEX-Forms Plugin up to 9.2.4 on WordPress Submission Report2 AJAX additional_params sql injection
A vulnerability was found in Webaways NEX-Forms Plugin up to 9.2.4 on WordPress. It has been classified as problematic. This impacts an unknown function of the component Submission Report2 AJAX Handler. This manipulation of the argument additional_params causes sql injection.
This vulnerability is handled as CVE-2026-15602. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More