SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-74003

MEDIUM · CVSS 4.3 EPSS 0.24%

Source: NVD + CISA KEV + EPSS · Published 2026-08-18 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

The RomethemeForm for Elementor versions up to 1.2.6 are vulnerable due to broken access control, which could allow unauthorized users to gain access to restricted functionalities or data. This vulnerability poses a medium risk, potentially leading to data exposure or manipulation. Organizations using this plugin should prioritize remediation to safeguard their applications against unauthorized access.

CVE
CVE-2026-74003
Severity
MEDIUM
CVSS
4.3
EPSS
0.24%

Original NVD Description

Contributor Broken Access Control in RomethemeForm For Elementor <= 1.2.6 versions.