CVE-2026-32525Disclosure

LOWCVSS 9.9 · CRITICAL

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Improper Control of Generation of Code ('Code Injection') vulnerability in jetmonsters JetFormBuilder jetformbuilder allows Code Injection.This issue affects JetFormBuilder: from n/a through <= 3.5.6.1.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-94

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 3 classified signals
  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-03-25: 3Technical Details · 2026-03-25: 303-25
Signal classification1 categories
Disclosure
3100.0%
Referenced assets3 URLs
Full discourse3 posts
  • CVE@CVEnew
    Disclosure

    CVE-2026-32525 Improper Control of Generation of Code ('Code Injection') vulnerability in jetmonsters JetFormBuilder jetformbuilder allows Code Injection.This issue affects JetFormB… https://www.cve.org/CVERecord?id=CVE-2026-32525

    Post summary

    CVE-2026-32525 is identified as a Code Injection flaw in JetFormBuilder, with basic technical details noted but no proof‑of‑concept, exploitation evidence, or patch information provided.

    00010211
    56.8K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-32525 Improper Control of Generation of Code ('Code Injection') vulnerability in jetmonsters JetFormBuilder jetformbuilder allows Code Injection.This issue affects JetFormB… https://www.cve.org/CVERecord?id=CVE-2026-32525 ----- Traducción: CVE-2026-32525 Ina… http://infoflow.cloud`

    Post summary

    A new CVE, CVE-2026-32525, has been announced for JetFormBuilder, highlighting a code injection vulnerability, with no further details on PoC, exploitation, or mitigation.

    0000030
    60 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2026-32525 - Critical Improper Control of Generation of Code ('Code Injection') vulnerability in jetmonsters JetFormBuilder jetformbuilder allows Code Injection.This issue affects JetFormBuilder: from n/a thro... https://www.thehackerwire.com/vulnerability/CVE-2026-32525/ https://t.co/3tFpCEDldI

    Post summary

    A critical code injection flaw (CVE‑2026‑32525) in JetFormBuilder has been disclosed, describing improper code generation, but no PoC, exploit, patch, or active exploitation evidence is offered.

    0000028
    145 followersView on X

Explore more