VYPR
Critical severity9.8NVD Advisory· Published Jun 15, 2026· Updated Jun 15, 2026

CVE-2026-49104

CVE-2026-49104

Description

Unauthenticated PHP Object Injection in Integration for Keap/infusionsoft and Contact Form 7, WPForms, Elementor, Formidable, Ninja Forms <= 1.2.1 versions.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2

Patches

Vulnerability mechanics

References

1

News mentions

1