← WordPress Vulnerabilities
WordPress security by component

Receive Notifications After Form Submitting – Form Notify for Any Forms

Receive Notifications After Form Submitting – Form Notify for Any Forms is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published May 15, 2026; the highest CVE/CNA score is 9.8.

Plugin slug: form-notify

CVE-2026-5229: Receive Notifications After Form Submitting – Form Notify for Any Forms: Privilege escalation or authentication bypass

Receive Notifications After Form Submitting – Form Notify for Any Forms is affected by privilege escalation or authentication bypass. The vulnerable path is reachable without authentication. A successful request can grant permissions or access that the caller should not possess. The published affected range is <= 1.1.10.

PublishedMay 15, 2026
Known safe version> 1.1.10
Safe version
May 15, 2026 CVE-2026-5229
Receive Notifications After Form Submitting – Form Notify for Any Forms: Privilege escalation or authentication bypass
Receive Notifications After Form Submitting – Form Notify for Any Forms is affected by privilege escalation or authentication bypass. The vulnerable path is reachable without authentication. A successful request can grant permissions or access that the caller should not possess. The published affected range is <= 1.1.10.
> 1.1.10
CVE9.8
NVDPending