Object Injection Vulnerability in ThemeREX Group Smash Product
CVE-2026-93931
9.8CRITICAL
What is CVE-2026-93931?
A deserialization vulnerability in the ThemeREX Group's Smash product allows attackers to exploit improper handling of untrusted data, leading to potential object injection scenarios. This issue impacts versions from n/a through 1.12.0, making it critical for users to implement necessary security measures to safeguard their applications.
Affected Version(s)
Smash 0 <= 1.12.0