Object Injection Vulnerability in ThemeGoods Grand Conference
CVE-2025-39354
What is CVE-2025-39354?
The Grand Conference Theme by ThemeGoods has a deserialization of untrusted data vulnerability that enables object injection. This flaw allows attackers to introduce malicious objects into the application, which can lead to unauthorized actions, code execution, or system compromise. The vulnerability affects all versions of Grand Conference from its initial release up to version 5.2, necessitating immediate attention for website administrators using this theme to ensure their systems are safeguarded against potential exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Grand Conference <= 5.2
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved