Server Resource Exhaustion in Brainstorm Force SureForms
CVE-2026-19500

Currently unrated

Key Information:

Vendor

Sureforms

Status
Vendor
CVE Published:
18 August 2026

What is CVE-2026-19500?

The Entries component in Brainstorm Force SureForms versions prior to 2.1.3 lacks sufficient validation on user-controlled form fields. This vulnerability permits remote attackers to exploit the system by crafting malicious form submissions that can deplete server resources. Such an attack may impede administrators' access to the Entries interface, leading to the occurrence of HTTP 500 errors and potentially disrupting normal operations.

Affected Version(s)

SureForms 0 < 2.1.3

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.