Object Injection Vulnerability in Option Tree Plugin for WordPress
CVE-2019-15320
9.8CRITICAL
What is CVE-2019-15320?
The Option Tree plugin for WordPress, prior to version 2.7.3, contains an Object Injection vulnerability stemming from improper handling of the '+' character. This issue may allow an attacker to inject unintended objects, leading to potential exploitation. Users are advised to upgrade to the latest version to mitigate risks associated with this vulnerability.