CyberRota Analysis
AI-GeneratedEverest Forms versions up to 3.6.0 are vulnerable to unauthenticated PHP Object Injection, allowing attackers to exploit this flaw to execute arbitrary code on the server. This critical vulnerability poses a significant risk to any organization using affected versions, particularly those with public-facing applications. Organizations should prioritize patching or upgrading to mitigate potential exploitation.
CVE
CVE-2026-62103
Severity
CRITICAL
CVSS
9.8
EPSS
0.31%
Original NVD Description
Unauthenticated PHP Object Injection in Everest Forms <= 3.6.0 versions.