CVE-2025-68924
EUVD-2026-209916.01.2026, 19:16
In Umbraco UmbracoForms through 8.13.16, an authenticated attacker can supply a malicious WSDL (aka Webservice) URL as a data source for remote code execution.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| umbraco | umbraco_forms | 𝑥 ≤ 8.13.16 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration