CVE · High

CVE-2026-57815 — Forminator Forms – Contact Form, Payment Form & Custom Form Builder [forminator] < 1.55.1

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2026-57815 Forminator Forms – Contact Form, Payment Form & Custom Form Builder [forminator] < 1.55.1 High 7.5 < 1.55.1 1.55.1 2026-07-08

CVE-2026-57815

The Forminator Forms plugin for WordPress contains a security flaw that allows unauthorized access to server files in all versions prior to and including 1.55.0.2, potentially exposing confidential data. This vulnerability enables attackers without authentication to view contents of any file on the server.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.