
CVE-2026-0825 The Database for Contact Form 7, WPforms, Elementor forms plugin for WordPress is vulnerable to authorization bypass due to missing capability checks on the CSV export … https://www.cve.org/CVERecord?id=CVE-2026-0825
Post summary
The post announces CVE-2026-0825, indicating an authorization bypass in WordPress form plugins stemming from absent capability checks during CSV export.
