A vulnerability was found in Basix NEX-Forms Plugin up to 9.1.3 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation results in cross-site request forgery.

This vulnerability is known as CVE-2025-49399. It is possible to launch the attack remotely. No exploit is available.