Virim <= 0.4 - PHP Object Injection
criticalThe Virim plugin 0.4 for WordPress allows Insecure Deserialization via s_values, t_values, or c_values in graph.php.
- CVSS:
- 9.8
- Affected:
- up to 0.4
- Fix:
- No patched version reported
- Disclosed:
- May 7, 2019
plugin
1 known security issue reported for the Virim WordPress plugin. Most recent disclosed May 7, 2019.
Running Virim on your site? Check whether your installed version is affected.
Scan your site freeThe Virim plugin 0.4 for WordPress allows Insecure Deserialization via s_values, t_values, or c_values in graph.php.
Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.
Scan your site free