Object Injection Vulnerability in Exertio Theme by PatchStack
CVE-2025-54686
9.8CRITICAL
What is CVE-2025-54686?
A vulnerability exists within the Exertio theme that allows for object injection through deserialization of untrusted data. This poses a security risk as it can be exploited by attackers to execute malicious code within the application. It is essential for users of Exertio versions up to 1.3.2 to apply patches and updates provided by PatchStack to mitigate this issue effectively.
Affected Version(s)
Exertio <= 1.3.2