All 4 CVE vulnerabilities found in MetForm Pro, with AI-generated Chinese analysis, references, and POCs.
Vendor: Wpmet
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-24611 | WordPress MetForm Pro plugin <= 3.9.1 - Broken Access Control vulnerability CWE-862 | 9.1 | Critical | 2026-06-17 |
| CVE-2026-24610 | WordPress MetForm Pro plugin <= 3.9.1 - Broken Access Control vulnerability CWE-862 | 4.3 | Medium | 2026-06-17 |
| CVE-2026-1782 | MetForm Pro <= 3.9.7 - Unauthenticated Payment Amount Manipulation via 'mf-calculation' CWE-20 | 5.3 | Medium | 2026-04-15 |
| CVE-2026-1261 | MetForm Pro <= 3.9.6 - Unauthenticated Stored Cross-Site Scripting CWE-79 | 7.2 | High | 2026-03-10 |
All 4 known CVE vulnerabilities affecting MetForm Pro with full Chinese analysis, references, and POCs where available.