VYPR
Unrated severityNVD Advisory· Published May 15, 2023· Updated Jan 24, 2025

Ad Inserter < 2.7.27 - Admin+ PHP Object Injection

CVE-2023-1549

Description

The Ad Inserter WordPress plugin before 2.7.27 unserializes user input provided via the settings, which could allow high privilege users such as admin to perform PHP Object Injection when a suitable gadget is present

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.