CVE-2026-19221 | CVSS: N/A
The Forminator Forms WordPress plugin before 1.57.0.5 does not restrict a network-wide setting to network administrators, allowing an administrator of any single site on a multisite network to execute arbitrary code across the entire network.
参考链接:
• https://wpscan.com/vulnerability/5aa85c72-2a60-4243-b370-ef0b46e98cfe/
📌 数据来源: NVD 官方
⚠️ 合规声明: 本文内容仅用于网络安全合规学习、科研与授权测试用途。严禁用于任何未授权行为,违者自行承担全部法律责任。