CVE-2026-32508: WordPress Halstein theme < 1.8 - Arbitrary Object Instantiation vulnerability
Published Mar 25, 2026
·Updated
Deserialization of Untrusted Data vulnerability in Mikado-Themes Halstein halstein allows Object Injection.This issue affects Halstein: from n/a through < 1.8.
Affected Software
1 affected component
Mikado-Themes Halstein<1.8
Event History
Mar 25, 2026
CVE Published
via MITRE·04:15 PM
Data Sourced
via MITRE·04:15 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-32508?
CVE-2026-32508 is classified as a high-severity vulnerability due to its potential for arbitrary object instantiation.
2
How do I fix CVE-2026-32508?
To fix CVE-2026-32508, update the WordPress Halstein theme to version 1.8 or later.
3
What does CVE-2026-32508 exploit?
CVE-2026-32508 exploits a deserialization of untrusted data vulnerability allowing for object injection.
4
Who is affected by CVE-2026-32508?
CVE-2026-32508 affects users of the Mikado-Themes Halstein theme versions prior to 1.8.
5
Can CVE-2026-32508 lead to further vulnerabilities?
Yes, CVE-2026-32508 could potentially lead to further vulnerabilities via arbitrary code execution if exploited.