Vulnerabilities
Latest: CVE-2025-13722 - Fluent Forms Missing Authorization Vulnerability
CVE ID : CVE-2025-13722 Published : Jan. 7, 2026, 10:20 a.m. | 1 hour, 55 minutes ago Description : The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 6.1.7. This is due to missing capability checks on the `fluentform_ai_create_form` AJAX action. This makes it possible for authenticated attackers, with Subscriber-level access and above, to create arbitrary forms via the publicly exposed AI builder. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE Details
Affected Product:
WordPress
Source: Telegram CVE Monitor