Loading
A SQL injection vulnerability exists in WPEverest Everest Forms plugin for WordPress through 1.4.9. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQL commands on the affected system via includes/evf-entry-functions.php
Use CWE-89, Wpeverest vendor hub and Everest Forms product page to widen CVE-2019-13575 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-3439, CVE-2025-1128 and CVE-2025-5927 for nearby disclosures in the same product family.