VYPR
Critical severity9.9NVD Advisory· Published Apr 23, 2026· Updated Apr 23, 2026

CVE-2026-39440

CVE-2026-39440

Description

Improper Control of Generation of Code ('Code Injection') vulnerability in Funnelforms LLC FunnelFormsPro allows Remote Code Inclusion.This issue affects FunnelFormsPro: from n/a through 3.8.1.

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

1