Security Advisory

CVE-2023-1669

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-05-02 07:04:55
Last updated 2025-01-30 14:42:20
Assigner WPScan
State PUBLISHED

Description

The SEOPress WordPress plugin before 6.5.0.3 unserializes user input provided via the settings, which could allow high-privilege users such as admin to perform PHP Object Injection when a suitable gadget is present.