Vulnerabilities > Webhuntinfotech

DATE CVE VULNERABILITY TITLE RISK
2024-06-19 CVE-2024-5649 Deserialization of Untrusted Data vulnerability in Webhuntinfotech Universal Slider
The Universal Slider plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.6.5 via deserialization of untrusted input 'fsl_get_gallery_value' function.
network
low complexity
webhuntinfotech CWE-502
8.8
2024-06-19 CVE-2024-5724 Deserialization of Untrusted Data vulnerability in Webhuntinfotech Photo Video Gallery Master
The Photo Video Gallery Master plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.5.3 via deserialization of untrusted input 'PVGM_all_photos_details' parameter.
network
low complexity
webhuntinfotech CWE-502
8.8