CyberRota Analysis
AI-GeneratedThe VK Google Job Posting Manager, versions up to 1.3.1, is vulnerable to a deserialization of untrusted data flaw that allows for object injection attacks. This vulnerability could enable an attacker to execute arbitrary code, potentially compromising the integrity and confidentiality of the affected system. Organizations using this plugin should prioritize patching or mitigating this issue to safeguard against potential exploitation.
CVE
CVE-2026-100511
Severity
HIGH
CVSS
8.8
EPSS
0.36%
Original NVD Description
Deserialization of Untrusted Data vulnerability in Vektor Inc. VK Google Job Posting Manager vk-google-job-posting-manager allows Object Injection.This issue affects VK Google Job Posting Manager: from n/a through 1.3.1.