VYPR
Critical severity9.8NVD Advisory· Published Jun 15, 2026· Updated Jun 15, 2026No known patch

CVE-2026-49105

CVE-2026-49105

Description

Unauthenticated PHP Object Injection in WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms <= 1.1.4 versions.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2

Patches

Vulnerability mechanics

References

1

News mentions

1