OCTOBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-94076

HIGH · CVSS 8.8 EPSS 0.36%

Source: NVD + CISA KEV + EPSS · Published 2026-09-30 · Last synced 2026-10-08

CyberRota Analysis

AI-Generated

The SEO Plugin by Squirrly SEO versions up to 14.2.5 is vulnerable to PHP Object Injection, which could allow an attacker to execute arbitrary code on the server. This high-severity vulnerability poses significant risks, particularly for websites utilizing this plugin, as it can lead to unauthorized access and potential data breaches. Web administrators and security teams managing affected installations should prioritize immediate updates or mitigations to safeguard their systems.

CVE
CVE-2026-94076
Severity
HIGH
CVSS
8.8
EPSS
0.36%

Original NVD Description

Contributor PHP Object Injection in SEO Plugin by Squirrly SEO <= 14.2.5 versions.