CVE-2026-85097 - Bricksforge <= 3.1.8.9 - Unauthenticated Arbitrary File Upload via 'temporaryFileUploads' Parameter
CVE ID :CVE-2026-85097 Published : Oct. 8, 2026, 6:42 a.m. | 47 minutes ago Description :The Bricksforge plugin for WordPress is vulnerable to unauthenticated arbitrary file upload in versions up to, and including, 3.1.8.9. This is due to insufficient validation of the attacker-controlled URL...