Product
An improper input validation vulnerability (CVE-2026-54721) in the Silverstripe userforms module allows authenticated attackers to achieve remote code execution by injecting malicious payloads into the email subject field.