Skip to content
MY SERVER HACKED
ServicesHow It WorksSecurityFAQNews
Get Emergency Help
CRITICAL 9.8 CVE-2026-93931 Published 10 Oct 2026

ThemeREX Smash Plugin Deserialization Object Injection Vulnerability

Worried this affects your website?

Get Emergency Help help@myserverhacked.com

A Deserialization of Untrusted Data vulnerability has been found in ThemeREX Group Smash. The flaw allows Object Injection.

Affected versions:

  • Smash from n/a through 1.12.0

Reference: CVE-2026-93931 on NVD

← Back to Security News
MY SERVER HACKED

Emergency Linux Server Recovery & Incident Response

help@myserverhacked.com

Service

  • Services
  • Security
  • How It Works
  • FAQ

Legal

  • Privacy
  • Terms
  • Request Help

© 2026 MY SERVER HACKED. All rights reserved.

Initial response target: within 1 hour. Not a guaranteed resolution time.