CVE-2026-54721 | SilverStripe userforms up to 6.4.8/7.0.6/7.1.0 Email code injection
A vulnerability was found in SilverStripe userforms up to 6.4.8/7.0.6/7.1.0 and classified as critical. Impacted is an unknown function of the component Email. Such manipulation leads to code injection.
This vulnerability is uniquely identified as CVE-2026-54721. The attack can be launched remotely. No exploit exists.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More