Cross-Site Scripting Vulnerability in Everest Forms Pro by WPEverest
CVE-2026-27070
7.1HIGH
What is CVE-2026-27070?
A Cross-Site Scripting (XSS) vulnerability exists in Everest Forms Pro, allowing attackers to inject malicious scripts that can compromise user data. This issue affects all versions from n/a to 1.9.10, potentially exposing users to attacks when viewing affected web pages. Proper input validation measures are essential to prevent the execution of unintended scripts, ensuring the security of user interactions.
Affected Version(s)
Everest Forms Pro <= 1.9.10