CVE-2026-56058CRITICAL NVDCVSS Score 9.9Severity CRITICALPublished Jun 26, 2026Vendor unknownDescriptionSubscriber Arbitrary File Upload in Quform <= 2.23.0 versions.Referenceshttps://patchstack.com/database/wordpress/plugin/quform/vulnerability/wordpress-quform-plugin-2-23-0-arbitrary-file-upload-vulnerability?_s_id=cve