Unauthenticated Arbitrary File Upload in SigmaForms Pro by Patchstack
CVE-2026-52705
9CRITICAL
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 17 June 2026
What is CVE-2026-52705?
SigmaForms Pro β AI Generated Forms versions up to 1.4.5 contain a vulnerability that allows unauthenticated users to upload arbitrary files. This could lead to potential exploitation, where attackers might plant malicious files on the server, compromising data integrity and system security. Users are advised to upgrade to the latest versions to mitigate risks associated with this vulnerability.
Affected Version(s)
SigmaForms Pro β AI Generated Forms <= 1.4.5