NA

CVE-2024-3591

Published: 01/05/2024 Updated: 01/05/2024

Vulnerability Summary

The Geo Controller WordPress plugin prior to 8.6.5 unserializes user input via some of its AJAX actions and REST API routes, which could allow unauthenticated users to perform PHP Object Injection when a suitable gadget is present on the blog.