B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

[High] CVE-2026-7654 – The Admin Columns plugin for WordPress is vulnerable to PHP Object Injection lea...

High CVE-2026-7654 The Admin Columns plugin for WordPress is vulnerable to PHP Object Injection leading to Remote Code Execution in versions up to and including 7.0.18. This is due to the use of `unserialize()` without an `allowed_classes` restriction in the `IdsToCollection::get_ids_from_string()`...

Original-Artikel öffnen Zurück zur Übersicht