CVE-2022-4680: Revive Old Posts – Social Media Auto Post and Scheduling Plugin < 9.0.11 - PHP Object Injection
The Revive Old Posts WordPress plugin before 9.0.11 unserializes user input provided via the settings, which could allow high privilege users such as admin to perform PHP Object Injection when a suitable gadget is present.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-4680?
CVE-2022-4680 is a vulnerability in the Revive Old Posts WordPress plugin before version 9.0.11 that allows high privilege users to perform PHP Object Injection.
What is the severity of CVE-2022-4680?
The severity of CVE-2022-4680 is high with a CVSS score of 7.2.
How does CVE-2022-4680 affect the Revive Old Posts plugin?
CVE-2022-4680 affects the Revive Old Posts plugin before version 9.0.11 by allowing high privilege users to perform PHP Object Injection.
How can I fix CVE-2022-4680?
To fix CVE-2022-4680, update the Revive Old Posts plugin to version 9.0.11 or higher.
Is there a reference for CVE-2022-4680?
Yes, you can find more information about CVE-2022-4680 at the following reference: [link](https://wpscan.com/vulnerability/f4197386-975d-4e53-8fc9-9425732da9af).