OCTOBER 6, 2026
Live Feed
Back to database
Case File

CVE-2026-100511

HIGH · CVSS 8.8 EPSS 0.36%

Source: NVD + CISA KEV + EPSS · Published 2026-10-05 · Last synced 2026-10-06

CyberRota Analysis

AI-Generated

The VK Google Job Posting Manager, versions up to 1.3.1, is vulnerable to a deserialization of untrusted data flaw that allows for object injection attacks. This vulnerability could enable an attacker to execute arbitrary code, potentially compromising the integrity and confidentiality of the affected system. Organizations using this plugin should prioritize patching or mitigating this issue to safeguard against potential exploitation.

CVE
CVE-2026-100511
Severity
HIGH
CVSS
8.8
EPSS
0.36%

Original NVD Description

Deserialization of Untrusted Data vulnerability in Vektor Inc. VK Google Job Posting Manager vk-google-job-posting-manager allows Object Injection.This issue affects VK Google Job Posting Manager: from n/a through 1.3.1.