SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-74012

HIGH · CVSS 8.8 EPSS 0.48%

Source: NVD + CISA KEV + EPSS · Published 2026-08-18 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

The vulnerability in TaxoPress versions up to 3.51.0 allows for PHP Object Injection, which could enable an attacker to execute arbitrary code or manipulate application behavior through crafted input. This poses a significant risk to any systems utilizing the affected versions, particularly those handling sensitive data or critical operations. Organizations using TaxoPress should prioritize patching or upgrading to mitigate potential exploitation.

CVE
CVE-2026-74012
Severity
HIGH
CVSS
8.8
EPSS
0.48%

Original NVD Description

Deserialization of Untrusted Data vulnerability in TaxoPress allows Object Injection. This issue affects TaxoPress: from n/a through 3.51.0.