WordPress Contact Form by Supsystic - Server-Side Template Injection CVE-2026-4257

Detectable with
Network Scanner
Scan engine
Nuclei
Cisa Kev
No
Exploitable with Sniper
No
CVE Published
Mar 30, 2026
Detection added at
Software Type
Not available
Vendor
supsystic
Product
contact_form

Detect this vulnerability now!

Check your clients' targets (or your own) for this vulnerability and thousands more! Get proof for validation with our ethical hacking toolkit.