CVE-2026-42377: Brainstorm Force Sureforms Pro
High severity, CVSS 7.3. EPSS: 0.3% chance of exploitation in the next 30 days.
Missing Authorization vulnerability in Brainstorm Force SureForms Pro allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects SureForms Pro: from n/a through 2.8.0.
Affected products
- Brainstorm Force Sureforms Pro: up to and including 2.8.0
Published 2026-04-29. Last modified 2026-06-17.