Deserialization Vulnerability in GiveWP by StellarWP
CVE-2026-82222
10CRITICAL
What is CVE-2026-82222?
A deserialization vulnerability exists in the GiveWP plugin, allowing unsanitized user input to manipulate object states and trigger remote code execution. This issue can lead to unauthorized actions being performed on the server, potentially impacting sensitive data and system integrity. The affected versions include GiveWP prior to 4.16.7.1, underscoring the importance for users to verify and update their installations to mitigate risks.
Affected Version(s)
GiveWP <= 4.16.7.1