WordPress security by component
e-shot
Plugin description
e-shot is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published Apr 15, 2026; the highest CVE/CNA score is 5.3.
Plugin slug:
e-shot-form-builderLatest vulnerability
CVE-2026-3642: e-shot: A security weakness
e-shot is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is <= 1.0.2.
| Safe version |
|
||
|---|---|---|---|
| Apr 15, 2026 |
CVE-2026-3642
e-shot: A security weakness
e-shot is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is <= 1.0.2.
|
> 1.0.2 |
CVE5.3
NVDPending
|
| Mar 21, 2026 |
CVE-2026-3546
e-shot form builder: Sensitive information exposure
e-shot form builder is affected by sensitive information exposure. Exploitation requires at least subscriber-level access. Successful exploitation can disclose data that should not be available to the caller.
|
See mitigation notes |
CVE5.3
NVDPending
|