PHP Object Injection Vulnerability in Agricola Theme by WordPress
CVE-2026-65579
9.8CRITICAL
What is CVE-2026-65579?
The Agricola theme for WordPress versions up to 1.21.0 contains a critical vulnerability that allows unauthenticated users to exploit PHP object injection. This flaw can lead to remote code execution, enabling attackers to manipulate or execute arbitrary PHP code within the application. It is crucial for users of this theme to update to the latest version to mitigate the risks associated with this vulnerability.
Affected Version(s)
Agricola <= 1.21.0