EdgeDetectOps[verified]@EdgeDetectOpsDisclosure
The text announces CVE-2026-4987, describing how SureForms payment forms allow user-controlled amounts without server-side validation, affecting all versions up to 2.5.2, but it provides no PoC, exploit details, or patch information.
pdnuclei-bot@pdnuclei_botDisclosure
The tweet announces the discovery of CVE-2026-4987, describing a payment amount validation bypass in SureForms, and provides a link for further information.
CyberDudeBivash® | Global Cybersecurity Company@cyberbivashDisclosure
The alert announces CVE‑2026‑4987 in SureForms 2.5.2 and later, detailing an unauthenticated bypass of payment amount validation via the form_id parameter. No exploit, patch, or PoC is referenced.
CVEarity@CVEarityDisclosure
The post announces a new WordPress CVE (CVE‑2026‑4987) with a severity score of 7.5 and references the NVD entry for details.
CyberDudeBivash® | Global Cybersecurity Company@cyberbivashDisclosure
The alert announces CVE-2026-4987 in SureForms (≤2.5.2), detailing an unauthenticated payment amount validation bypass via 'form_id'. No PoC, exploit code, active exploitation, or patch information is provided.
CyberDudeBivash® | Global Cybersecurity Company@cyberbivashDisclosure
A new vulnerability (CVE-2026-4987) affecting SureForms devices up to version 2.5.2 is announced, enabling unauthenticated users to bypass payment amount validation through the 'form_id' parameter. No exploit, patch, or active exploitation details are provided.
CVE@CVEnewDisclosure
The post announces CVE‑2026‑4987, a Payment Amount Bypass vulnerability affecting all versions of the SureForms WordPress plugin, and directs readers to the official CVE record.