PT-2026-106094 · Liquid Web / Stellarwp · Advanced Post Manager

·

CVE-2026-97283

·

Published

2026-10-05

·

Updated

2026-10-06

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
🚨 CVE-2026-97283 (CVSS 9.8 Critical)
Liquid Web / StellarWP Advanced Post Manager through 4.5.5 is vulnerable to untrusted data deserialization, enabling remote attackers to execute PHP Object Injection.

Fix

Deserialization of Untrusted Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-97283

Affected Products

Advanced Post Manager