PT-2026-28022 · WordPress · Halstein

Published

2026-03-25

·

Updated

2026-03-29

·

CVE-2026-32508

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions Mikado-Themes Halstein versions prior to 1.8
Description An issue exists in Halstein that allows for object injection due to deserialization of untrusted data. This could potentially allow for malicious code execution.
Recommendations Update Halstein to version 1.8 or later.

Fix

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

CVE-2026-32508

Affected Products

Halstein