SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-57815

HIGH · CVSS 7.5 EPSS 0.33%

Source: NVD + CISA KEV + EPSS · Published 2026-07-13 · Last synced 2026-08-12

CyberRota Analysis

AI-Generated

A path traversal vulnerability in the Forminator plugin for WordPress allows attackers to access restricted directories, potentially leading to unauthorized file access and data exposure. This affects all versions up to and including 1.55.0.2, and organizations using this plugin should prioritize patching to mitigate the risk of exploitation. WordPress site administrators and security teams should take immediate action to update to the latest version to safeguard their systems.

CVE
CVE-2026-57815
Severity
HIGH
CVSS
7.5
EPSS
0.33%
WordPress

Original NVD Description

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WPMU DEV - Your All-in-One WordPress Platform Forminator forminator allows Path Traversal.This issue affects Forminator: from n/a through <= 1.55.0.2.