Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-42753 | The Ocean Extra WordPress plugin before 2.0.5 unserialises the content of an imported file, which could lead to PHP object injections issues when a high privilege user import (intentionally or not) a malicious Customizer Styling file and a suitable gadget chain is present on the blog. |
Tue, 06 May 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-05-06T20:17:11.614Z
Reserved: 2022-09-30T00:00:00.000Z
Link: CVE-2022-3374
Updated: 2024-08-03T01:07:06.519Z
Status : Modified
Published: 2022-10-31T16:15:11.393
Modified: 2025-05-06T21:15:53.543
Link: CVE-2022-3374
No data.
OpenCVE Enrichment
No data.
EUVD