Deserialization Vulnerability in Polylang Plugin by Chouby
CVE-2025-64353 
8.8HIGH
What is CVE-2025-64353?
The Polylang plugin by Chouby is susceptible to a deserialization of untrusted data vulnerability, which enables object injection. This flaw affects all versions prior to 3.7.3, allowing attackers to exploit the plugin's functionality, potentially leading to unauthorized access and manipulation of sensitive data within WordPress sites.
Affected Version(s)
Polylang <= n/a