Code Injection Vulnerability in FunnelFormsPro by Funnelforms LLC
⚠️ CVE-Referenzen:
CVE-2026-39440
WordPress - Funnelformspro - CRITICAL - CVE-2026-39440.
A vulnerability exists in FunnelFormsPro developed by Funnelforms LLC that allows for remote code inclusion through improper control over the generation of code. This flaw affects all versions from n/a up to and including 3.8.1, potentially allowing an attacker to execute arbitrary code on affected systems.
Quelle: securityvulnerability.io