No analysis available yet.
Vendor Solution
Update the WordPress ShortPixel Image Optimizer Plugin to the latest available version (at least 6.4.4).
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 16 Jun 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Shortpixel
Shortpixel shortpixel Image Optimizer Wordpress Wordpress wordpress |
|
| Vendors & Products |
Shortpixel
Shortpixel shortpixel Image Optimizer Wordpress Wordpress wordpress |
Mon, 15 Jun 2026 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 15 Jun 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Author PHP Object Injection in ShortPixel Image Optimizer <= 6.4.3 versions. | |
| Title | WordPress ShortPixel Image Optimizer plugin <= 6.4.3 - PHP Object Injection vulnerability | |
| Weaknesses | CWE-502 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-06-15T22:16:38.626Z
Reserved: 2026-04-07T10:41:57.169Z
Link: CVE-2026-39471
Updated: 2026-06-15T22:16:34.780Z
Status : Deferred
Published: 2026-06-15T21:16:43.860
Modified: 2026-06-15T21:24:32.790
Link: CVE-2026-39471
No data.
OpenCVE Enrichment
Updated: 2026-06-16T03:00:15Z
-
CWE-502
Deserialization of Untrusted Data