
CVE-2026-0996 The Fluent Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the AI Form Builder module in all versions up to, and including, 6.1.14 due to a … https://www.cve.org/CVERecord?id=CVE-2026-0996
Post summary
The text announces a stored XSS vulnerability (CVE‑2026‑0996) in the AI Form Builder module of Fluent Forms WordPress plugin, affecting versions up to 6.1.14, with no PoC, exploit, patch, or active exploitation noted.

