CRITICAL
9.8 CVE-2026-62076 Published 10 Oct 2026
Kalles Theme PHP Object Injection Vulnerability
Worried this affects your website?
Kalles versions up to and including 1.1.7.1 are affected by an unauthenticated PHP object injection vulnerability.
An attacker can exploit this issue without authentication.
- Affected versions: Kalles <= 1.1.7.1
- Attack type: unauthenticated
- Impact: PHP object injection
Reference: CVE-2026-62076 on NVD
← Back to Security News