← WordPress Vulnerabilities
WordPress security by component

e-shot

e-shot is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published Apr 15, 2026; the highest CVE/CNA score is 5.3.

Plugin slug: e-shot-form-builder

CVE-2026-3642: e-shot: A security weakness

e-shot is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is <= 1.0.2.

PublishedApr 15, 2026
Known safe version> 1.0.2
Safe version
Apr 15, 2026 CVE-2026-3642
e-shot: A security weakness
e-shot is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is <= 1.0.2.
> 1.0.2
CVE5.3
NVDPending
Mar 21, 2026 CVE-2026-3546
e-shot form builder: Sensitive information exposure
e-shot form builder is affected by sensitive information exposure. Exploitation requires at least subscriber-level access. Successful exploitation can disclose data that should not be available to the caller.
See mitigation notes
CVE5.3
NVDPending