Description
Deserialization of Untrusted Data vulnerability in Liquid Web / StellarWP GiveWP allows Object Injection.
This issue affects GiveWP: from n/a through 4.16.7.1.
This issue affects GiveWP: from n/a through 4.16.7.1.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
Update the WordPress GiveWP Plugin to the latest available version (at least 4.16.7.2).
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Fri, 28 Aug 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Deserialization of Untrusted Data vulnerability in Liquid Web / StellarWP GiveWP allows Object Injection. This issue affects GiveWP: from n/a through 4.16.7.1. | |
| Title | WordPress GiveWP plugin <= 4.16.7.1 - Remote Code Execution (RCE) vulnerability | |
| Weaknesses | CWE-502 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-08-28T10:48:13.686Z
Reserved: 2026-08-28T09:18:05.695Z
Link: CVE-2026-82222
No data.
No data.
No data.
OpenCVE Enrichment
No data.
Weaknesses