OCTOBER 6, 2026
Live Feed
Back to database
Case File

CVE-2026-97257

HIGH · CVSS 8.8 EPSS 0.36%

Source: NVD + CISA KEV + EPSS · Published 2026-10-05 · Last synced 2026-10-06

CyberRota Analysis

AI-Generated

A deserialization vulnerability in PressTigers Simple Event Planner versions up to 1.5.7 allows for object injection, which could enable an attacker to execute arbitrary code or manipulate application behavior. Organizations using this software should prioritize remediation efforts due to the high severity rating, as exploitation could lead to significant security breaches. Immediate action is recommended for all users of the affected versions to mitigate potential risks.

CVE
CVE-2026-97257
Severity
HIGH
CVSS
8.8
EPSS
0.36%

Original NVD Description

Deserialization of Untrusted Data vulnerability in PressTigers Simple Event Planner simple-event-planner allows Object Injection.This issue affects Simple Event Planner: from n/a through 1.5.7.