CVE-2025-64206: WordPress Jannah theme <= 7.6.0 - PHP Object Injection vulnerability
Published Dec 18, 2025
·Updated
Deserialization of Untrusted Data vulnerability in TieLabs Jannah jannah allows Object Injection.This issue affects Jannah: from n/a through <= 7.6.0.
Affected Software
1 affected component
Tielabs Jannah<=7.6.0
Event History
Dec 18, 2025
CVE Published
via MITRE·07:22 AM
Data Sourced
via MITRE·07:22 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-64206?
CVE-2025-64206 is classified as a high severity vulnerability due to the potential for object injection leading to remote code execution.
2
How do I fix CVE-2025-64206?
To fix CVE-2025-64206, you should update the TieLabs Jannah theme to a version higher than 7.6.0.
3
What versions of TieLabs Jannah are affected by CVE-2025-64206?
CVE-2025-64206 affects all versions of TieLabs Jannah from n/a through version 7.6.0.
4
What type of vulnerability is CVE-2025-64206?
CVE-2025-64206 is a deserialization of untrusted data vulnerability, specifically allowing object injection.
5
Is CVE-2025-64206 a common vulnerability?
CVE-2025-64206 is considered a serious concern in web applications that utilize the affected versions of the Jannah theme.