The Entries component in Brainstorm Force SureForms version, less than 2.1.3, does not enforce adequate limits on user-controlled form fields or submitted content during processing and rendering, which allows a remote attacker to exhaust server resources, prevent administrators from accessing the Entries interface, and trigger HTTP 500 errors via crafted form submissions.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 18 Aug 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sureforms
Sureforms sureforms |
|
| Vendors & Products |
Sureforms
Sureforms sureforms |
Tue, 18 Aug 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-770 |
Tue, 18 Aug 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Entries component in Brainstorm Force SureForms version, less than 2.1.3, does not enforce adequate limits on user-controlled form fields or submitted content during processing and rendering, which allows a remote attacker to exhaust server resources, prevent administrators from accessing the Entries interface, and trigger HTTP 500 errors via crafted form submissions. | |
| Title | SureForms contains an uncontrolled resource consumption vulnerability | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2026-08-18T17:57:56.730Z
Reserved: 2026-08-10T18:57:53.091Z
Link: CVE-2026-19500
No data.
Status : Received
Published: 2026-08-18T16:17:02.647
Modified: 2026-08-18T16:17:02.647
Link: CVE-2026-19500
No data.
OpenCVE Enrichment
Updated: 2026-08-18T17:30:15Z
Weaknesses