The Form Maker plugin, which is used with WordPress websites, has a security vulnerability that could let attackers access sensitive information from the website’s database. This vulnerability exists in all versions up to and including 1.13.35, and is caused by insufficient escaping of user supplied parameters and lack of preparation of existing SQL queries.