Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-27260 | Deserialization of Untrusted Data vulnerability in ExpressTech Systems Quiz And Survey Master allows Object Injection. This issue affects Quiz And Survey Master: from n/a through 10.2.5. |
Thu, 23 Apr 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Wed, 01 Apr 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Deserialization of Untrusted Data vulnerability in ExpressTech Systems Quiz And Survey Master allows Object Injection. This issue affects Quiz And Survey Master: from n/a through 10.2.5. | Incorrect Privilege Assignment vulnerability in axiomthemes smart SEO smartSEO allows Privilege Escalation.This issue affects smart SEO: from n/a through <= 4.0. |
| Title | WordPress Quiz And Survey Master Plugin <= 10.2.5 - PHP Object Injection Vulnerability | WordPress smart SEO Plugin <= 4.0 - Privilege Escalation Vulnerability |
| Weaknesses | CWE-502 | CWE-266 |
| References | ||
| Metrics |
cvssV3_1
|
Tue, 09 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 07 Sep 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Expresstech
Expresstech quiz And Survey Master Wordpress Wordpress wordpress |
|
| Vendors & Products |
Expresstech
Expresstech quiz And Survey Master Wordpress Wordpress wordpress |
Fri, 05 Sep 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Deserialization of Untrusted Data vulnerability in ExpressTech Systems Quiz And Survey Master allows Object Injection. This issue affects Quiz And Survey Master: from n/a through 10.2.5. | |
| Title | WordPress Quiz And Survey Master Plugin <= 10.2.5 - PHP Object Injection Vulnerability | |
| Weaknesses | CWE-502 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-04-28T16:13:03.429Z
Reserved: 2025-06-04T15:44:03.663Z
Link: CVE-2025-49401
Updated: 2025-09-09T13:47:18.384Z
Status : Deferred
Published: 2025-09-05T17:15:37.757
Modified: 2026-04-23T15:31:36.970
Link: CVE-2025-49401
No data.
OpenCVE Enrichment
Updated: 2026-04-30T15:30:16Z
EUVD