CRITICAL
9.8 CVE-2026-62105 Published 11 Sept 2026
ThemeREX Addons PHP Object Injection
Worried this affects one of your servers?
ThemeREX Addons, a WordPress plugin, is affected by an unauthenticated PHP Object Injection vulnerability in versions prior to 2.45.0.
This vulnerability allows attackers to inject malicious PHP objects, potentially leading to remote code execution.
Reference: CVE-2026-62105 on NVD
← Back to Security News