Description
Deserialization of Untrusted Data vulnerability in Scott Reilly Preserve Code Formatting preserve-code-formatting allows Object Injection.This issue affects Preserve Code Formatting: from n/a through <= 4.0.1.
Problem types
Deserialization of Untrusted Data
Product status
Any version
Credits
mcdruid | Patchstack Bug Bounty Program
References
vdp.patchstack.com/...0-1-php-object-injection-vulnerability