Critical severity9.8NVD Advisory· Published Nov 20, 2023· Updated Jun 17, 2026
CVE-2023-5340
CVE-2023-5340
Description
The Five Star Restaurant Menu and Food Ordering WordPress plugin before 2.4.11 unserializes user input via an AJAX action available to unauthenticated users, allowing them to perform PHP Object Injection when a suitable gadget is present on the blog.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:fivestarplugins:five_star_restaurant_menu:*:*:*:*:*:wordpress:*:*Range: <2.4.11
- WordPress/Five Star Restaurant Menu and Food Orderingdescription
- Range: <2.4.11
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/91a5847a-62e7-4b98-a554-5eecb6a06e5bnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.