CVE-2026-39440
Improper Control of Generation of Code ('Code Injection') vulnerability in Funnelforms LLC FunnelFormsPro allows Remote
Improper Control of Generation of Code ('Code Injection') vulnerability in Funnelforms LLC FunnelFormsPro allows Remote Code Inclusion.This issue affects FunnelFormsPro: from n/a through 3.8.1.
CRITICAL · CVSS 9.9
EPSS 0.00022
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0