CVE-2026-19658

CVE-2026-19658 published: The Give Tributes plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 2.3.1 via deserialization of untrusted input . This makes it possible for unauthenticated attackers to inject a PHP Object. No known POP chain...

View full NVD advisory → ← Back to CVE watch