CVE-2026-5096 | Wpeverest Everest Forms Plugin up to 3.4.4 on WordPress Upload Field class-evf-form-task.php load_previous_field_value POST server-side request forgery

SecurityVulns

A vulnerability classified as problematic has been found in Wpeverest Everest Forms Plugin up to 3.4.4 on WordPress. Impacted is the function load_previous_field_value of the file class-evf-form-task.php of the component Upload Field. The manipulation of the argument POST leads to server-side request forgery.

This vulnerability is documented as CVE-2026-5096. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More