1 results (0.002 seconds)

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 1

28 Oct 2024 — Deserialization of Untrusted Data vulnerability in Daniel Schmitzer DS.DownloadList allows Object Injection.This issue affects DS.DownloadList: from n/a through 1.3. La vulnerabilidad de deserialización de datos no confiables en DS.DownloadList de Daniel Schmitzer permite la inyección de objetos. Este problema afecta a DS.DownloadList: desde n/a hasta 1.3. The DS.DownloadList plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.3 via deserialization of untrusted... • https://github.com/RandomRobbieBF/CVE-2024-50507 • CWE-502: Deserialization of Untrusted Data •