The Formidable Forms WordPress plugin prior to 6.2 unserializes user input, which could allow anonymous users to perform PHP Object Injection when a suitable gadget is present.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
strategy11 formidable forms |