CVE-2026-39467: WordPress Responsive Slider by MetaSlider plugin <= 3.106.0 - PHP Object Injection vulnerability
Deserialization of Untrusted Data vulnerability in MetaSlider Responsive Slider by MetaSlider allows Object Injection.This issue affects Responsive Slider by MetaSlider: from n/a through 3.106.0.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2026-39467?
CVE-2026-39467 has a medium severity level due to the potential for PHP Object Injection vulnerabilities.
How does CVE-2026-39467 affect the MetaSlider Responsive Slider plugin?
CVE-2026-39467 allows for deserialization of untrusted data, posing a risk of object injection in versions up to 3.106.0 of the MetaSlider Responsive Slider plugin.
How do I fix CVE-2026-39467?
To fix CVE-2026-39467, update the MetaSlider Responsive Slider plugin to a version higher than 3.106.0.
What versions of MetaSlider Responsive Slider are affected by CVE-2026-39467?
CVE-2026-39467 affects the MetaSlider Responsive Slider plugin versions from n/a to 3.106.0 inclusive.
Can CVE-2026-39467 lead to unauthorized access?
Yes, CVE-2026-39467 can potentially lead to unauthorized access due to the object injection vulnerability.