Ad

CVE-2025-15441

NONE
Updated Apr 13, 2026
Unknown
Parameter Value
Affected Versions before 1.15.38
Type CWE-89 SQL Injection
Vendor Unknown
Public PoC No

The Form Maker by 10Web WordPress plugin before 1.15.38 does not properly prepare SQL queries when the "MySQL Mapping" feature is in use, which could make SQL Injection attacks possible in certain contexts.

Weakness Type (CWE)

Vulnerable Products

unknown:form maker by 10web