Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sat, 22 Aug 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 |
Sat, 22 Aug 2026 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Forminator Forms WordPress plugin before 1.57.0.7 does not consistently enforce the role restriction it applies to registration forms, allowing users who are permitted to build forms to configure one that assigns the administrator role to any visitor who registers through it. | |
| Title | Forminator Forms < 1.57.0.7 - Authenticated Privilege Escalation via Registration Form Role Bypass | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2026-08-22T06:00:17.071Z
Reserved: 2026-08-07T09:04:29.255Z
Link: CVE-2026-19222
No data.
Status : Received
Published: 2026-08-22T06:16:16.383
Modified: 2026-08-22T06:16:16.383
Link: CVE-2026-19222
No data.
OpenCVE Enrichment
Updated: 2026-08-22T07:30:17Z