Unauthenticated PHP Object Injection in Wise Chat Plugin by Wise Chat
CVE-2026-81784
8.1HIGH
What is CVE-2026-81784?
The Wise Chat Plugin versions up to 3.4 are susceptible to an unauthenticated PHP Object Injection vulnerability, which might allow attackers to exploit untrusted input fields. By manipulating how the plugin handles objects, unauthorized users may execute harmful code or interfere with the application's functionalities, posing a risk to the integrity and security of WordPress websites using this plugin.
Affected Version(s)
Wise Chat <= 3.4