Forms
This hub aggregates every CVE we track for Forms, a product in the web cms plugins space. Use it to gauge the current risk picture and drill into individual advisories.
25
CVEs tracked
11
Critical
4
High
1
In CISA KEV
Severity distribution
CRITICAL11MEDIUM9HIGH4LOW1
Monthly trend
0
1
0
0
0
0
0
0
0
0
1
0
0
0
0
1
0
0
0
0
1
1
0
10
2024-102026-09
Latest CVEs
The 15 most recently published vulnerabilities affecting Forms.
- CVE-2026-83109Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component: Forms Services, C/S, Charmode). Supported versions that are affected are 12.2.1.19.0 and 14.1.2.0.0. Easily explo...5.3
- CVE-2026-83108Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component: Forms Services, C/S, Charmode). Supported versions that are affected are 12.2.1.19.0 and 14.1.2.0.0. Easily explo...9.8
- CVE-2026-83104Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component: Forms Services, C/S, Charmode). Supported versions that are affected are 12.2.1.19.0 and 14.1.2.0.0. Easily explo...9.1
- CVE-2026-83100Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component: Forms Services, C/S, Charmode). Supported versions that are affected are 12.2.1.19.0 and 14.1.2.0.0. Easily explo...9.8
- CVE-2026-83099Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component: Forms Services, C/S, Charmode). Supported versions that are affected are 12.2.1.19.0 and 14.1.2.0.0. Easily explo...10.0
- CVE-2026-83098Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component: Forms Services, C/S, Charmode). Supported versions that are affected are 12.2.1.19.0 and 14.1.2.0.0. Easily explo...9.8
- CVE-2026-83097Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component: Forms Services, C/S, Charmode). Supported versions that are affected are 12.2.1.19.0 and 14.1.2.0.0. Easily explo...6.5
- CVE-2026-83095Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component: Forms Services, C/S, Charmode). Supported versions that are affected are 12.2.1.19.0 and 14.1.2.0.0. Easily explo...9.8
- CVE-2026-83093Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component: Forms Services, C/S, Charmode). Supported versions that are affected are 12.2.1.19.0 and 14.1.2.0.0. Easily explo...8.6
- CVE-2026-83094Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component: Forms Services, C/S, Charmode). Supported versions that are affected are 12.2.1.19.0 and 14.1.2.0.0. Easily explo...9.8
- CVE-2026-56291Joomla Extension - balbooa.com - Unauthenticated file upload in Balbooa Forms extension < 2.4.1KEV9.8
- CVE-2026-45543Nextcloud: Deleting a Forms collaborator share leaves uploaded response files accessible through a lingering Files share5.3
- CVE-2025-68924In Umbraco UmbracoForms through 8.13.16, an authenticated attacker can supply a malicious WSDL (aka Webservice) URL as a data source for remote code execution.7.5
- CVE-2025-24775WordPress Forms <= 2.9.0 - Arbitrary File Upload Vulnerability9.9
- CVE-2024-51791WordPress Forms plugin <= 2.8.0 - Arbitrary File Upload vulnerability10.0
Product normalization is registry-driven with AI assist and human review. How it works