cleantalk
Vulnerabilities and Security Researches

Easy Form Builder, CVE-2026-42747

CVE, Research URL

CVE-2026-42747

Application

Easy Form Builder

Published on
May 27, 2026
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in hassantafreshi Easy Form Builder easy-form-builder allows Blind SQL Injection.This issue affects Easy Form Builder: from n/a through <= 4.0.6.
Affected versions
max 4.0.6.
Status
vulnerable