Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 29 Jul 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Bplugins
Bplugins survey Form Block – Collect Answers And Insights From Your Audience Wordpress Wordpress wordpress |
|
| Vendors & Products |
Bplugins
Bplugins survey Form Block – Collect Answers And Insights From Your Audience Wordpress Wordpress wordpress |
|
| Metrics |
ssvc
|
Wed, 29 Jul 2026 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Survey Form Block plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the get_all_data() function in all versions up to, and including, 1.0.1. This makes it possible for authenticated attackers, with Subscriber-level access and above, to export all survey submission data and column metadata. | |
| Title | Survey Form Block <= 1.0.1 - Missing Authorization to Authenticated (Subscriber+) Survey Submission Data Export | |
| Weaknesses | CWE-862 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2026-07-29T14:24:16.632Z
Reserved: 2026-04-05T18:05:22.216Z
Link: CVE-2026-5626
Updated: 2026-07-29T14:24:12.358Z
Status : Deferred
Published: 2026-07-29T04:17:13.503
Modified: 2026-07-30T14:01:30.413
Link: CVE-2026-5626
No data.
OpenCVE Enrichment
Updated: 2026-08-04T12:45:05Z