Everest forms pro
This hub aggregates every CVE we track for Everest forms pro, a product in the web cms plugins space. Use it to gauge the current risk picture and drill into individual advisories.
4
CVEs tracked
1
Critical
2
High
0
In CISA KEV
Severity distribution
HIGH2MEDIUM1CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
1
0
0
0
0
1
0
0
0
2
0
0
0
0
0
0
2024-102026-09
Latest CVEs
The 4 most recently published vulnerabilities affecting Everest forms pro.
- CVE-2026-3300Everest Forms Pro <= 1.9.12 - Unauthenticated Remote Code Execution via Calculation Field9.8
- CVE-2026-27070WordPress Everest Forms Pro plugin <= 1.9.10 - Cross Site Scripting (XSS) vulnerability7.1
- CVE-2025-8871Everest Forms (Pro) <= 1.9.7 - Unauthenticated PHP Object Injection via PHAR Deserialization in Form Signature5.6
- CVE-2025-5927Everest Forms (Pro) <= 1.9.4 - Unauthenticated Path Traversal to Arbitrary File Deletion7.5
Product normalization is registry-driven with AI assist and human review. How it works