CVE-2026-49085
CRM Perks WP Insightly for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms
Unauthenticated PHP Object Injection in WP Insightly for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms <= 1.1.4 versions.
- CVSS
- 9.8
- EPSS
- 0.48% 38.7% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.16