CRITICAL 9.8 CVE-2026-62105 Published 11 Sept 2026

ThemeREX Addons PHP Object Injection

Worried this affects one of your servers?

ThemeREX Addons, a WordPress plugin, is affected by an unauthenticated PHP Object Injection vulnerability in versions prior to 2.45.0.

This vulnerability allows attackers to inject malicious PHP objects, potentially leading to remote code execution.

Reference: CVE-2026-62105 on NVD

← Back to Security News