CVE-2026-19500
SureForms contains an uncontrolled resource consumption vulnerability
CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
0th
The Entries component in Brainstorm Force SureForms version, less than 2.1.3, does not enforce adequate limits on user-controlled form fields or submitted content during processing and rendering, which allows a remote attacker to exhaust server resources, prevent administrators from accessing the Entries interface, and trigger HTTP 500 errors via crafted form submissions.
| Vendor | sureforms |
| Product | sureforms |
| Published | Aug 18, 2026 |
| Last Updated | Aug 18, 2026 |
Stay Ahead of the Next One
Get instant alerts for sureforms sureforms
Be the first to know when new high vulnerabilities affecting sureforms sureforms are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
SureForms / SureForms
0 < 2.1.3