Deserialization of Untrusted Data vulnerability in Mario Peshev WP-CRM System allows Object Injection. This issue affects WP-CRM System: from n/a through 3.4.1.
References
Configurations
History
12 May 2025, 20:31
Type | Values Removed | Values Added |
---|---|---|
References | () https://patchstack.com/database/wordpress/plugin/wp-crm-system/vulnerability/wordpress-wp-crm-system-3-4-1-php-object-injection-vulnerability?_s_id=cve - Third Party Advisory | |
First Time |
Wp-crm wp-crm System
Wp-crm |
|
CPE | cpe:2.3:a:wp-crm:wp-crm_system:*:*:*:*:*:wordpress:*:* |
08 May 2025, 14:39
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
07 May 2025, 15:16
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-07 15:16
Updated : 2025-05-12 20:31
NVD link : CVE-2025-47629
Mitre link : CVE-2025-47629
CVE.ORG link : CVE-2025-47629
JSON object : View
Products Affected
wp-crm
- wp-crm_system
CWE
CWE-502
Deserialization of Untrusted Data