Object Injection Vulnerability in Hygia Theme by ThemeREX Group
CVE-2026-93937
9.8CRITICAL
What is CVE-2026-93937?
The Hygia theme developed by ThemeREX Group is affected by a vulnerability that allows object injection through the deserialization of untrusted data. This issue can potentially enable attackers to carry out harmful actions on affected WordPress sites, highlighting the need for timely updates to version 1.21.0 or later to ensure security.
Affected Version(s)
Hygia 0 <= 1.21.0