PT-2026-106094 · Liquid Web / Stellarwp · Advanced Post Manager
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
🚨 CVE-2026-97283 (CVSS 9.8 Critical)
Liquid Web / StellarWP Advanced Post Manager through 4.5.5 is vulnerable to untrusted data deserialization, enabling remote attackers to execute PHP Object Injection.
Fix
Deserialization of Untrusted Data
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Advanced Post Manager