News Security CVE-2026-19513: Gravity Forms unauthenticated file upload risk and what site owners should do September 2, 2026 by Alex Mira | Leave a Comment CVE-2026-19513 affects Gravity Forms ≤ 3.0.2, allowing unauthenticated file writes under specific conditions. Update to 3.0.3+ and verify upload directory behavior, especially on NGINX. Read more » Arbitrary file upload CVE-2026-19513 Gravity Forms NGINX Plugin vulnerability Remote code execution risk WordPress security