Software intelligence
Important: Advanced Forms appearing in this catalog does not mean your website is affected. Exposure depends on your installed version. How SiteRespond intelligence works
Tracked advisories
3
Latest advisory
7 July 2026
CISA KEV matches
0
In this WordPress feed
WordPress slug
advanced-forms
Plugin
This catalog lists 3 known advisories affecting Advanced Forms. The most recent was published on 7 July 2026. If you use this software, compare your installed version against the affected ranges on each advisory and update to a fixed release outside those ranges. SiteRespond Defence checks your actual installed version when the plugin is connected — listing here does not by itself mean your site is vulnerable.
Advanced Forms for ACF <= 1.9.3.7 - Missing Authorization
This advisory describes a other issue in the affected software. Review the source advisory and your installed version to assess exposure.
Published 7 July 2026
Advanced Forms for ACF <= 1.9.3.2 - Missing Authorization to Unauthenticated Form Settings Export
This advisory describes a other issue in the affected software. Review the source advisory and your installed version to assess exposure.
Published 5 February 2024
Advanced Forms for ACF <= 1.6.8 - Insecure Direct Object Reference
This advisory describes a other issue in the affected software. Review the source advisory and your installed version to assess exposure.
Published 27 June 2020
Known Advanced Forms advisories published by month.
CVE-2026-57378 · Published 7 July 2026
Affected versions: ≤ 1.9.3.7
CVE-2024-1121 · Published 5 February 2024
Affected versions: ≤ 1.9.3.2
CVE-2021-24892 · Published 27 June 2020
Affected versions: < 1.6.9
SiteRespond Defence matches your installed Advanced Forms version against this catalog when the Defence plugin is connected to your WordPress site.