PT-2026-56698 · WordPress · Everest Forms
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Everest Forms versions prior to 3.5.0
Description
The plugin fails to reliably delete temporary CSV files created during email-notification processing. These files remain publicly accessible within the uploads directory. Unauthenticated attackers can retrieve form submission records of other users by utilizing predictable and enumerable filenames.
Recommendations
Update the plugin to version 3.5.0 or later.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Everest Forms