CRITICAL 9.8 CVE-2026-73397 Published 18 Aug 2026

Youzify WordPress Plugin Deserialization Vulnerability

Worried this affects one of your servers?

Youzify versions up to and including 1.3.7 are affected by an unauthenticated deserialization of untrusted data vulnerability.

The flaw can be exploited without authentication, allowing untrusted data to be deserialized by the plugin.

  • Affected versions: Youzify <= 1.3.7
  • Attack type: unauthenticated
  • Vulnerability type: deserialization of untrusted data

Reference: CVE-2026-73397 on NVD

← Back to Security News