cleantalk
Vulnerabilities and Security Researches

Metform Elementor Contact Form Builder, PSC-2026-64652

PSC, Research URL

PSC-2026-64652

Published on
Mar 30, 2026
Research Description
MetForm – Contact Form, Survey, Quiz, & Custom Form Builder for Elementor (v4.1.3) is a powerful drag-and-drop form builder plugin designed to extend Elementor with advanced form creation capabilities. It allows users to build complex forms such as contact forms, surveys, booking forms, payment forms, and more without writing code. Built for websites running on WordPress, MetForm integrates deeply into both frontend and backend workflows, handling user input, data storage, AJAX submissions, file uploads, and third-party integrations. With over 600,000+ active installations, the plugin operates in a highly sensitive layer of application logic, making security a critical factor. A comprehensive source-code audit was conducted to evaluate its safety.
Affected versions
Min 4.1.3, max 4.1.3.
Status
SAFE & CERTIFIED