PT-2026-28039 · Unknown · Jetformbuilder

Published

2026-03-25

·

Updated

2026-03-26

·

CVE-2026-32525

CVSS v3.1

9.9

Critical

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions JetFormBuilder versions through 3.5.6.1
Description A code injection issue exists in JetFormBuilder. The flaw resides in improper control of code generation, potentially allowing for code injection. The vulnerability could allow an attacker to inject malicious code. No information is available regarding the number of potentially affected devices or any real-world exploitation incidents. The vulnerability affects the jetformbuilder component.
Recommendations Update JetFormBuilder to a version later than 3.5.6.1.

Fix

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2026-32525

Affected Products

Jetformbuilder