Unauthenticated Access Control Flaw in MetForm Pro by WPMet
CVE-2026-24611
9.1CRITICAL
What is CVE-2026-24611?
MetForm Pro versions up to 3.9.1 are affected by an unauthenticated access control vulnerability. This flaw allows attackers to exploit inadequate access controls, potentially leading to unauthorized actions within the application, compromising user data and security. It emphasizes the importance of ensuring robust access management practices in WordPress plugins.
Affected Version(s)
MetForm Pro <= 3.9.1