Description
Shop manager PHP Object Injection in CTX Feed <= 6.6.26 versions.
No analysis available yet.
Remediation
Vendor Solution
Update the WordPress CTX Feed Plugin to the latest available version (at least 6.6.27).
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Tue, 16 Jun 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Webappick
Webappick ctx Feed Wordpress Wordpress wordpress |
|
| Vendors & Products |
Webappick
Webappick ctx Feed Wordpress Wordpress wordpress |
Mon, 15 Jun 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Shop manager PHP Object Injection in CTX Feed <= 6.6.26 versions. | |
| Title | WordPress CTX Feed plugin <= 6.6.26 - PHP Object Injection vulnerability | |
| Weaknesses | CWE-502 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-06-15T20:17:40.681Z
Reserved: 2026-04-07T08:24:21.368Z
Link: CVE-2026-39434
No data.
Status : Deferred
Published: 2026-06-15T21:16:42.460
Modified: 2026-06-15T21:24:32.790
Link: CVE-2026-39434
No data.
OpenCVE Enrichment
Updated: 2026-06-16T04:30:15Z
Weaknesses
-
CWE-502
Deserialization of Untrusted Data