This issue affects SureForms Pro: from n/a through 2.8.0.
Project Subscriptions
No advisories yet.
Solution
Update the WordPress SureForms Pro Plugin to the latest available version (at least 2.8.1).
Workaround
No workaround given by the vendor.
Wed, 29 Apr 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 29 Apr 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Brainstormforce
Brainstormforce sureforms Wordpress Wordpress wordpress |
|
| Vendors & Products |
Brainstormforce
Brainstormforce sureforms Wordpress Wordpress wordpress |
Wed, 29 Apr 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in Brainstorm Force SureForms Pro allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects SureForms Pro: from n/a through 2.8.0. | |
| Title | WordPress SureForms Pro plugin <= 2.8.0 - Broken Access Control vulnerability | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-04-29T13:16:17.514Z
Reserved: 2026-04-27T08:22:05.095Z
Link: CVE-2026-42377
Updated: 2026-04-29T13:16:11.681Z
Status : Received
Published: 2026-04-29T08:16:18.337
Modified: 2026-04-29T08:16:18.337
Link: CVE-2026-42377
No data.
OpenCVE Enrichment
Updated: 2026-04-29T10:00:09Z