CVE-2025-3422 | Contact Form The Everest Forms Plugin up to 3.1.1 on WordPress Shortcode do_shortcode Remote Code Execution
A vulnerability, which was classified as critical, has been found in Contact Form The Everest Forms Plugin up to 3.1.1 on WordPress. This issue affects the function do_shortcode of the component Shortcode Handler. The manipulation leads to Remote Code Execution.
The identification of this vulnerability is CVE-2025-3422. The attack may be initiated remotely. There is no exploit available.