Description
Deserialization of Untrusted Data vulnerability in themeton PressGrid - Frontend Publish Reaction & Multimedia Theme allows Object Injection. This issue affects PressGrid - Frontend Publish Reaction & Multimedia Theme: from n/a through 1.3.1.
Problem types
CWE-502 Deserialization of Untrusted Data
Product status
Any version
Credits
Tran Nguyen Bao Khanh (VCI - VNPT Cyber Immunity) (Patchstack Alliance)
References
patchstack.com/...-of-untrusted-data-vulnerability?_s_id=cve