Lucene search

K
patchstackDennis BrinkrolfPATCHSTACK:444EFB7D5D8F266E7FB72E947CA2302D
HistoryJun 22, 2021 - 12:00 a.m.

WordPress CiviCRM plugin <= 5.24.2 - Authenticated Phar Deserialization vulnerability

2021-06-2200:00:00
Dennis Brinkrolf
patchstack.com
6

0.001 Low

EPSS

Percentile

42.0%

Authenticated Phar Deserialization vulnerability discovered by Dennis Brinkrolf (SonarSource) in WordPress CiviCRM plugin (versions <= 5.24.2).

Solution

           Update the WordPress CiviCRM plugin to the latest available version (at least 5.24.3).
CPENameOperatorVersion
civicrmle5.24.2

0.001 Low

EPSS

Percentile

42.0%

Related for PATCHSTACK:444EFB7D5D8F266E7FB72E947CA2302D