CyberRota Analysis
AI-GeneratedThe vulnerability allows for PHP Object Injection in the Export User Data plugin versions 2.2.6 and earlier, potentially enabling attackers to execute arbitrary code on affected systems. This critical flaw poses a significant risk to any organization using these versions of the plugin, as it can lead to unauthorized access and data manipulation. Organizations utilizing this plugin should prioritize immediate updates or remediation to mitigate the risk.
CVE
CVE-2026-65552
Severity
CRITICAL
CVSS
9.8
EPSS
0.43%
Original NVD Description
Subscriber PHP Object Injection in Export User Data <= 2.2.6 versions.