CVE-2026-57338HIGH NVDCVSS Score 7.1Severity HIGHPublished Jun 29, 2026Vendor unknownDescriptionUnauthenticated Cross Site Scripting (XSS) in ARForms <= 7.1.2 versions.Referenceshttps://patchstack.com/database/wordpress/plugin/arforms/vulnerability/wordpress-arforms-plugin-7-1-2-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve