AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-19796

MEDIUM · CVSS 6.1 EPSS 1.58%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-12-03 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2018-19796
Severity
MEDIUM
CVSS
6.1
EPSS
1.58%
WordPress

Original NVD Description

An open redirect in the Ninja Forms plugin before 3.3.19.1 for WordPress allows Remote Attackers to redirect a user via the lib/StepProcessing/step-processing.php (aka submissions download page) redirect parameter.