CRITICAL
9.8 CVE-2026-73397 Published 18 Aug 2026
Youzify WordPress Plugin Deserialization Vulnerability
Worried this affects one of your servers?
Youzify versions up to and including 1.3.7 are affected by an unauthenticated deserialization of untrusted data vulnerability.
The flaw can be exploited without authentication, allowing untrusted data to be deserialized by the plugin.
- Affected versions: Youzify <= 1.3.7
- Attack type: unauthenticated
- Vulnerability type: deserialization of untrusted data
Reference: CVE-2026-73397 on NVD
← Back to Security News