OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-97284

HIGH · CVSS 8.8 EPSS 0.29%

Source: NVD + CISA KEV + EPSS · Published 2026-10-01 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

Icegram versions up to 3.1.31 are vulnerable to PHP Object Injection, which could allow an attacker to execute arbitrary code or manipulate application behavior. This high-severity vulnerability poses a significant risk to any systems utilizing the affected versions, making it critical for developers and system administrators to prioritize immediate updates or mitigations. Organizations relying on Icegram for their applications should assess their exposure and take action to safeguard against potential exploitation.

CVE
CVE-2026-97284
Severity
HIGH
CVSS
8.8
EPSS
0.29%

Original NVD Description

Contributor PHP Object Injection in Icegram <= 3.1.31 versions.