CVE-2026-18331 | strategy11team Formidable Forms Plugin up to 6.33.1 on WordPress wp_kses_post frm_user_id cross site scripting

SecurityVulns

A vulnerability categorized as problematic has been discovered in strategy11team Formidable Forms Plugin up to 6.33.1 on WordPress. Affected by this issue is the function wp_kses_post. Executing a manipulation of the argument frm_user_id can lead to cross site scripting.

The identification of this vulnerability is CVE-2026-18331. The attack may be launched remotely. There is no exploit available.VulDB Recent EntriesRead More