← WordPress Vulnerabilities
WordPress security by component

Contact Form Extender for Divi – Save Entries, File Upload & Country Code Field

Contact Form Extender for Divi – Save Entries, File Upload & Country Code Field is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Jun 15, 2026; the highest CVE/CNA score is 8.6.

Plugin slug: contact-form-extender-for-divi-builder

CVE-2026-40769: Contact Form Extender for Divi – Save Entries, File Upload & Country Code Field: Arbitrary file deletion

Contact Form Extender for Divi – Save Entries, File Upload & Country Code Field is affected by arbitrary file deletion. The vulnerable path is reachable without authentication. A successful request can remove files outside the intended scope and may make the site unavailable. The published affected range is n/a through 1.0.6.

PublishedJun 15, 2026
Known safe version1.0.7
Safe version
Jun 15, 2026 CVE-2026-40769
Contact Form Extender for Divi – Save Entries, File Upload & Country Code Field: Arbitrary file deletion
Contact Form Extender for Divi – Save Entries, File Upload & Country Code Field is affected by arbitrary file deletion. The vulnerable path is reachable without authentication. A successful request can remove files outside the intended scope and may make the site unavailable. The published affected range is n/a through 1.0.6.
1.0.7
CVE8.6
NVDPending