Metform pro
This hub aggregates every CVE we track for Metform pro, a product in the web cms plugins space. Use it to gauge the current risk picture and drill into individual advisories.
4
CVEs tracked
1
Critical
1
High
0
In CISA KEV
Severity distribution
MEDIUM2HIGH1CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
1
0
2
0
0
0
2024-102026-09
Latest CVEs
The 4 most recently published vulnerabilities affecting Metform pro.
- CVE-2026-24611WordPress MetForm Pro plugin <= 3.9.1 - Broken Access Control vulnerability9.1
- CVE-2026-24610WordPress MetForm Pro plugin <= 3.9.1 - Broken Access Control vulnerability4.3
- CVE-2026-1782MetForm Pro <= 3.9.7 - Unauthenticated Payment Amount Manipulation via 'mf-calculation'5.3
- CVE-2026-1261MetForm Pro <= 3.9.6 - Unauthenticated Stored Cross-Site Scripting7.2
Product normalization is registry-driven with AI assist and human review. How it works