PHP Object Injection in ARMember Premium by ARMember
CVE-2026-27060
8.8HIGH
What is CVE-2026-27060?
A PHP Object Injection vulnerability found in ARMember Premium versions prior to 7.0 can let an attacker manipulate application data. Successful exploitation may lead to serious impacts, such as unauthorized access to sensitive information or execution of arbitrary code within the application context.
Affected Version(s)
ARMember Premium <= 7.0