Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Saif

#31704de 53,632
8.1CVSS total
Vulnerabilidades · 1
PT-2026-24587
8.1
2026-03-11
Undefined · Undefined · CVE-2026-2626
**Name of the Vulnerable Software and Affected Versions** divi-booster WordPress plugin versions prior to 5.0.2 **Description** The divi-booster WordPress plugin does not have authorization and Cross-Site Request Forgery (CSRF) checks in a specific function. This allows unauthenticated users to modify stored plugin options. The use of the `unserialize()` function on the data introduces a potential for PHP Object Injection when combined with a PHP gadget chain. **Recommendations** Update the divi-booster WordPress plugin to version 5.0.2 or later.