WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in FormGent – Next-Gen AI Form Builder for WordPress with Multi-Step, Quizzes, Payments & More

AI-powered form builder that’s built for performance, simplicity, and feels like a part of WordPress, not a separate platform.

4Reported vulnerabilities
9.1Highest CVSS score
1.11.0Latest version
1,000+Active installs

What to do now

Update FormGent – Next-Gen AI Form Builder for WordPress with Multi-Step, Quizzes, Payments & More to 1.10.0 or later. 3 of these have a fixed version available. Updating resolves them.

Plugin last updated: July 13, 2026 / Tested up to WordPress: 7.0.4 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2026-3141 Critical 9.1 0.6% 0 to 1.9.2 (inclusive) 1.10.0 August 1, 2026
CVE-2026-22460 Critical 9.1 0.4% 1.4.2 and earlier March 3, 2026
CVE-2025-10916 High 7.5 0.3% 1.0.3 and earlier 1.0.4 September 30, 2025
CVE-2025-15028 High 7.2 0.2% 0 to 1.9.2 (inclusive) 1.10.0 August 6, 2026

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.