CVE-2026-0740 is a vulnerability tracked across 1 threat cluster and 4 intelligence report mentions on ThreatCluster. First observed April 7, 2026; most recent activity April 7, 2026.
A critical vulnerability (CVE-2026-0740) in the Ninja Forms File Uploads plugin for WordPress allows unauthenticated attackers to upload arbitrary files, potentially leading to remote code execution. This flaw, with a…