CVE-2026-3584 | wpchill Kali Forms Plugin up to 2.4.9 on WordPress Placeholder form_process code injection (EUVD-2026-13814)
A vulnerability classified as critical has been found in wpchill Kali Forms Plugin up to 2.4.9 on WordPress. This vulnerability affects the function form_process of the component Placeholder Handler. Performing a manipulation results in code injection.
This vulnerability was named CVE-2026-3584. The attack may be initiated remotely. There is no available exploit.