PT-2026-26058 · Shinetheme · Shinetheme Traveler

Phat Rio

·

Publicado

2026-03-18

·

Atualizado

2026-03-18

·

CVE-2026-25449

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Shinetheme Traveler versions prior to 3.2.8.1
Description The Shinetheme Traveler software contains a flaw related to the deserialization of untrusted data, which can lead to object injection. This issue allows for potential remote code execution.
Recommendations Update Shinetheme Traveler to version 3.2.8.1 or later.

Correção

RCE

Deserialization of Untrusted Data

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-25449

Produtos afetados

Shinetheme Traveler