CRITICAL
9.8 CVE-2026-39797 Published 6 Oct 2026
GDPR Framework By Data443 PHP Object Injection Vulnerability
Worried this affects your website?
The GDPR Framework By Data443 plugin contains an PHP Object Injection vulnerability.
This issue affects versions up to and including 2.5.0 and can be exploited without authentication.
Reference: CVE-2026-39797 on NVD
← Back to Security News