WordPress Themify Ultra Theme <= 7.3.5 is vulnerable to PHP Object Injection
CVE-2023-46147
8.8HIGH
What is CVE-2023-46147?
A deserialization of untrusted data vulnerability exists in Themify Ultra. This flaw may allow an attacker to exploit the application's handling of serialized data, potentially leading to unauthorized actions or system compromise when the affected application processes untrusted input. Users are urged to update to the latest versions to mitigate the potential risks associated with this vulnerability.
Affected Version(s)
Themify Ultra <= 7.3.5