The Forminator Forms plugin for WordPress has a security issue that allows hackers to access sensitive information from the database. This is due to a problem with how the plugin handles user input, making it vulnerable to a type of attack called time-based SQL Injection. This can only be done by someone with Administrator-level access or higher.