Deserialization Vulnerability in Everest Forms by WPEverest
CVE-2025-52709
9.8CRITICAL
What is CVE-2025-52709?
The Everest Forms plugin by WPEverest contains a vulnerability that allows for the deserialization of untrusted data, leading to potential object injection threats. This issue affects versions from n/a through 3.2.2, making it essential for users to review their installations and apply necessary security measures to protect their applications.
Affected Version(s)
Everest Forms <= 3.2.2